Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

usememos/memos — Vulnerabilities & Security Advisories 58

All 58 CVE vulnerabilities found in usememos/memos, with AI-generated Chinese analysis, references, and POCs.

This page catalogs security vulnerabilities associated with the usememos/memos software product, focusing on Common Weakness Enumeration classifications. It aggregates a comprehensive list of reported security flaws, including buffer overflows, input validation errors, and logic vulnerabilities that affect the stability and confidentiality of the memos platform. The data covers vulnerability records from the initial public release of the software through the most recent patch cycles, ensuring a historical perspective on the project's security posture over time. Visitors to this resource can effectively track the vendor's advisory history to understand how quickly critical issues are addressed and patched. By examining the aggregate data, users can gain insight into the specific weakness classes that frequently impact this codebase, allowing for more targeted security audits and mitigation strategies. This page also serves as a lookup tool for the complete vulnerability history of the product, helping developers and security professionals identify recurring patterns in code quality and potential areas for improvement. The information is presented in a neutral, factual manner to facilitate accurate risk assessment and informed decision-making regarding the deployment and maintenance of memos instances. This approach supports transparent security practices by making historical flaw data accessible for analysis and reference without promotional language or subjective evaluation of the product's overall safety.

Vendor: usememos

CVE IDTitleCVSSSeverityPublished
CVE-2023-0109 Stored XSS in usememos/memos CWE-79 5.4AIMediumAI2024-11-15
CVE-2023-5036 Cross-Site Request Forgery (CSRF) in usememos/memos CWE-352 6.5 -2023-09-18
CVE-2023-4697 Improper Privilege Management in usememos/memos CWE-269 8.1 -2023-09-01
CVE-2023-4696 Improper Access Control in usememos/memos CWE-284 4.3 -2023-09-01
CVE-2023-4698 Improper Input Validation in usememos/memos CWE-20 9.1 -2023-09-01
CVE-2023-0112 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2023-01-07
CVE-2023-0111 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2023-01-07
CVE-2023-0110 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2023-01-07
CVE-2023-0108 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2023-01-07
CVE-2023-0107 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2023-01-07
CVE-2023-0106 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2023-01-07
CVE-2022-4866 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-31
CVE-2022-4865 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-31
CVE-2022-4863 Improper Handling of Insufficient Permissions or Privileges in usememos/memos CWE-280 8.1 -2022-12-30
CVE-2022-4851 Improper Handling of Values in usememos/memos CWE-229 4.3 -2022-12-29
CVE-2022-4850 Cross-Site Request Forgery (CSRF) in usememos/memos CWE-352 6.5 -2022-12-29
CVE-2022-4849 Cross-Site Request Forgery (CSRF) in usememos/memos CWE-352 6.5 -2022-12-29
CVE-2022-4848 Improper Verification of Source of a Communication Channel in usememos/memos CWE-940 6.5 -2022-12-29
CVE-2022-4847 Incorrectly Specified Destination in a Communication Channel in usememos/memos CWE-941--2022-12-29
CVE-2022-4846 Cross-Site Request Forgery (CSRF) in usememos/memos CWE-352 6.5 -2022-12-29
CVE-2022-4845 Cross-Site Request Forgery (CSRF) in usememos/memos CWE-352 6.5 -2022-12-29
CVE-2022-4844 Cross-Site Request Forgery (CSRF) in usememos/memos CWE-352 6.5 -2022-12-29
CVE-2022-4841 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-29
CVE-2022-4840 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-29
CVE-2022-4839 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-29
CVE-2022-4811 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 8.3 High2022-12-28
CVE-2022-4814 Improper Access Control in usememos/memos CWE-284 4.3 -2022-12-28
CVE-2022-4813 Insufficient Granularity of Access Control in usememos/memos CWE-1220 4.3 -2022-12-28
CVE-2022-4812 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 4.3 -2022-12-28
CVE-2022-4810 Improper Access Control in usememos/memos CWE-284 4.3 -2022-12-28

All 58 known CVE vulnerabilities affecting usememos/memos with full Chinese analysis, references, and POCs where available.