PT-2022-28081 · Unknown · Usememos/Memos

Published

2022-12-27

·

Updated

2024-08-21

·

CVE-2022-4767

CVSS v3.1

7.6

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions usememos/memos versions prior to 0.9.1
Description The issue is a Denial of Service vulnerability in the GitHub repository usememos/memos. A patch is available on the main branch at commit number f888c628408501daf639de07b90a72ab443b0f4c.
Recommendations For versions prior to 0.9.1, update to version 0.9.1 or later to resolve the issue. As a temporary workaround, consider restricting access to the repository until the update is applied.

Exploit

Fix

DoS

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-4767
GHSA-33M8-F4HW-WM3Q
GO-2022-1219

Affected Products

Usememos/Memos