github.com/usememos/memos
Open-source, self-hosted note-taking tool built for quick capture. Markdown-native, lightweight, and fully yours.
Activity
- Latest release
- 18h ago
- Total releases
- 22
- Cadence
- ~20 days
- Last 12 months
- 17
Reach
- Stars
- 63.1k
Details
- First release
- Mar 23, 2025
| Version | Released | |
|---|---|---|
v0.31.0-rc.2
pre
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.31.0-rc.2
pre
Dependencies (44)
+ 36 more |
|
v0.31.0-rc.1
pre
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.31.0-rc.1
pre
Dependencies (44)
+ 36 more |
|
v0.30.0
minor
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.30.0
minor
Dependencies (43)
+ 35 more |
|
v0.30.0-rc.2
pre
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.30.0-rc.2
pre
Dependencies (43)
+ 35 more |
|
v0.30.0-rc.1
pre
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.30.0-rc.1
pre
Dependencies (43)
+ 35 more |
|
v0.29.1
patch
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.29.1
patch
Dependencies (41)
+ 33 more |
|
v0.29.0
minor
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.29.0
minor
Dependencies (41)
+ 33 more |
|
v0.28.0
minor
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.28.0
minor
Dependencies (39)
+ 31 more |
|
v0.27.1
patch
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.27.1
patch
Dependencies (39)
+ 31 more |
|
v0.27.0
minor
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.27.0
minor
Dependencies (39)
+ 31 more |
|
v0.27.0-rc.2
pre
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.27.0-rc.2
pre
Dependencies (37)
+ 29 more |
|
v0.27.0-rc.1
pre
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.27.0-rc.1
pre
Dependencies (37)
+ 29 more |
|
v0.26.2
patch
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.26.2
patch
Dependencies (36)
+ 28 more |
|
v0.26.1
patch
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.26.1
patch
Dependencies (36)
+ 28 more |
|
v0.26.0
minor
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.26.0
minor
Dependencies (35)
+ 27 more |
|
v0.25.3
patch
6 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.25.3
patch
Dependencies (33)
+ 25 more |
|
v0.25.2
patch
11 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2025-65797
GO-2025-4220
GHSA-99m2-qwx6-2w6f
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65798
GO-2025-4216
GHSA-8p44-g572-557h
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65795
GO-2025-4217
GHSA-mg56-wc4q-rw4w
Dec 15, 2025
memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65796
GO-2025-4215
GHSA-8jcj-g9f4-qx42
Dec 15, 2025
memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65799
GO-2025-4218
GHSA-qgjp-5g5x-vhq2
Dec 15, 2025
memos lacks file name validation or verification in github.com/usememos/memos memos lacks file name validation or verification in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.25.2
patch
Dependencies (32)
+ 24 more |
|
v0.25.1
patch
11 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2025-65797
GO-2025-4220
GHSA-99m2-qwx6-2w6f
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65798
GO-2025-4216
GHSA-8p44-g572-557h
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65795
GO-2025-4217
GHSA-mg56-wc4q-rw4w
Dec 15, 2025
memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65796
GO-2025-4215
GHSA-8jcj-g9f4-qx42
Dec 15, 2025
memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65799
GO-2025-4218
GHSA-qgjp-5g5x-vhq2
Dec 15, 2025
memos lacks file name validation or verification in github.com/usememos/memos memos lacks file name validation or verification in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.25.1
patch
Dependencies (32)
+ 24 more |
|
v0.25.0
minor
11 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2025-65797
GO-2025-4220
GHSA-99m2-qwx6-2w6f
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65798
GO-2025-4216
GHSA-8p44-g572-557h
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65795
GO-2025-4217
GHSA-mg56-wc4q-rw4w
Dec 15, 2025
memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65796
GO-2025-4215
GHSA-8jcj-g9f4-qx42
Dec 15, 2025
memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65799
GO-2025-4218
GHSA-qgjp-5g5x-vhq2
Dec 15, 2025
memos lacks file name validation or verification in github.com/usememos/memos memos lacks file name validation or verification in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.25.0
minor
Dependencies (32)
+ 24 more |
|
v0.24.4
patch
11 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2025-65797
GO-2025-4220
GHSA-99m2-qwx6-2w6f
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65798
GO-2025-4216
GHSA-8p44-g572-557h
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65795
GO-2025-4217
GHSA-mg56-wc4q-rw4w
Dec 15, 2025
memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65796
GO-2025-4215
GHSA-8jcj-g9f4-qx42
Dec 15, 2025
memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65799
GO-2025-4218
GHSA-qgjp-5g5x-vhq2
Dec 15, 2025
memos lacks file name validation or verification in github.com/usememos/memos memos lacks file name validation or verification in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.24.4
patch
Dependencies (32)
+ 24 more |
|
v0.24.3
patch
12 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2025-65797
GO-2025-4220
GHSA-99m2-qwx6-2w6f
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65798
GO-2025-4216
GHSA-8p44-g572-557h
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65795
GO-2025-4217
GHSA-mg56-wc4q-rw4w
Dec 15, 2025
memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65796
GO-2025-4215
GHSA-8jcj-g9f4-qx42
Dec 15, 2025
memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65799
GO-2025-4218
GHSA-qgjp-5g5x-vhq2
Dec 15, 2025
memos lacks file name validation or verification in github.com/usememos/memos memos lacks file name validation or verification in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-50738
GO-2025-3831
GHSA-hfcf-79gh-f3jc
Aug 11, 2025
Memos has Cross-Site Scripting (XSS) Vulnerability in Image URLs in github.com/usememos/memos Memos has Cross-Site Scripting (XSS) Vulnerability in Image URLs in github.com/usememos/memos Fixed in
0.24.4
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.24.3
patch
Dependencies (32)
+ 24 more |
|
v0.24.2
initial
12 CVEs
CVE-2026-6634
GO-2026-5403
GHSA-gqp3-hfc3-8q54
Jun 25, 2026
Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos Memos has an Incorrect Privilege Assignment issue in github.com/usememos/memos References Updated Jun 25, 2026 · Source: OSV.dev
CVE-2025-65797
GO-2025-4220
GHSA-99m2-qwx6-2w6f
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion registered identity providers in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65798
GO-2025-4216
GHSA-8p44-g572-557h
Dec 15, 2025
memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos memos vulnerability allows arbitrarily modification or deletion of attachments in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65795
GO-2025-4217
GHSA-mg56-wc4q-rw4w
Dec 15, 2025
memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos memos vulnerability allows the creation of arbitrary accounts in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65796
GO-2025-4215
GHSA-8jcj-g9f4-qx42
Dec 15, 2025
memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos memos vulnerability allows arbitrarily reactions deletion in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-65799
GO-2025-4218
GHSA-qgjp-5g5x-vhq2
Dec 15, 2025
memos lacks file name validation or verification in github.com/usememos/memos memos lacks file name validation or verification in github.com/usememos/memos Fixed in
0.25.3
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2024-21635
GO-2025-4127
GHSA-mr34-8733-grr2
Nov 17, 2025
Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos Memos' Access Tokens Stay Valid after User Password Change in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56760
GO-2025-3936
GHSA-78j5-8vq7-jxv5
Sep 08, 2025
Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos Memos Vulnerable to Path Traversal via the CreateResource Endpoint in github.com/usememos/memos References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-56761
GO-2025-3937
GHSA-cgrg-86m5-xm4w
Sep 08, 2025
Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos Memos Vulnerable to Stored Cross-Site Scripting in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-50738
GO-2025-3831
GHSA-hfcf-79gh-f3jc
Aug 11, 2025
Memos has Cross-Site Scripting (XSS) Vulnerability in Image URLs in github.com/usememos/memos Memos has Cross-Site Scripting (XSS) Vulnerability in Image URLs in github.com/usememos/memos Fixed in
0.24.4
References Updated Mar 03, 2026 · Source: OSV.dev
CVE-2025-22952
GO-2025-3492
GHSA-wfxg-v3j4-7qmj
Mar 03, 2025
Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos Memos Server-Side Request Forgery (SSRF) in github.com/usememos/memos References
Updated Mar 03, 2026 · Source: OSV.dev
CVE-2023-4698
GHSA-96gq-6ch5-mm54
Sep 01, 2023
usememos/memos vulnerable to improper input validation
7.5
/ 10
High
Network
Low
None
None
Unchanged
High
None
None
Improper Input Validation in GitHub repository usememos/memos prior to 0.13.2. References Updated Nov 08, 2023 · Source: OSV.dev |
v0.24.2
initial
Dependencies (32)
+ 24 more |