Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

usememos/memos — Vulnerabilities & Security Advisories 58

All 58 CVE vulnerabilities found in usememos/memos, with AI-generated Chinese analysis, references, and POCs.

This page catalogs security vulnerabilities associated with the usememos/memos software product, focusing on Common Weakness Enumeration classifications. It aggregates a comprehensive list of reported security flaws, including buffer overflows, input validation errors, and logic vulnerabilities that affect the stability and confidentiality of the memos platform. The data covers vulnerability records from the initial public release of the software through the most recent patch cycles, ensuring a historical perspective on the project's security posture over time. Visitors to this resource can effectively track the vendor's advisory history to understand how quickly critical issues are addressed and patched. By examining the aggregate data, users can gain insight into the specific weakness classes that frequently impact this codebase, allowing for more targeted security audits and mitigation strategies. This page also serves as a lookup tool for the complete vulnerability history of the product, helping developers and security professionals identify recurring patterns in code quality and potential areas for improvement. The information is presented in a neutral, factual manner to facilitate accurate risk assessment and informed decision-making regarding the deployment and maintenance of memos instances. This approach supports transparent security practices by making historical flaw data accessible for analysis and reference without promotional language or subjective evaluation of the product's overall safety.

Vendor: usememos

CVE IDTitleCVSSSeverityPublished
CVE-2022-4796 Incorrect Use of Privileged APIs in usememos/memos CWE-648 8.1 -2022-12-28
CVE-2022-4797 Improper Restriction of Excessive Authentication Attempts in usememos/memos CWE-307 7.5 -2022-12-28
CVE-2022-4798 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 4.3 -2022-12-28
CVE-2022-4799 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 4.3 -2022-12-28
CVE-2022-4800 Improper Verification of Source of a Communication Channel in usememos/memos CWE-940 6.5 -2022-12-28
CVE-2022-4801 Insufficient Granularity of Access Control in usememos/memos CWE-1220 4.3 -2022-12-28
CVE-2022-4802 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 4.3 -2022-12-28
CVE-2022-4804 Improper Authorization in usememos/memos CWE-285 4.3 -2022-12-28
CVE-2022-4805 Incorrect Use of Privileged APIs in usememos/memos CWE-648 8.1 -2022-12-28
CVE-2022-4806 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 4.3 -2022-12-28
CVE-2022-4807 Improper Access Control in usememos/memos CWE-284 4.3 -2022-12-28
CVE-2022-4808 Improper Privilege Management in usememos/memos CWE-269 8.1 -2022-12-28
CVE-2022-4809 Improper Access Control in usememos/memos CWE-284 4.3 -2022-12-28
CVE-2022-4803 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 4.3 -2022-12-28
CVE-2022-4767 Denial of Service in usememos/memos CWE-400 7.5 -2022-12-27
CVE-2022-4734 Improper Removal of Sensitive Information Before Storage or Transfer in usememos/memos CWE-212 8.1 High2022-12-25
CVE-2022-4683 Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in usememos/memos CWE-614 5.3 -2022-12-23
CVE-2022-4684 Improper Access Control in usememos/memos CWE-284 5.4 -2022-12-23
CVE-2022-4686 Authorization Bypass Through User-Controlled Key in usememos/memos CWE-639 9.1 -2022-12-23
CVE-2022-4687 Incorrect Use of Privileged APIs in usememos/memos CWE-648 8.1 -2022-12-23
CVE-2022-4688 Improper Authorization in usememos/memos CWE-285 5.4 -2022-12-23
CVE-2022-4689 Improper Access Control in usememos/memos CWE-284 5.4 -2022-12-23
CVE-2022-4690 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-23
CVE-2022-4691 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-23
CVE-2022-4692 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-23
CVE-2022-4694 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-23
CVE-2022-4695 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-23
CVE-2022-4609 Cross-site Scripting (XSS) - Stored in usememos/memos CWE-79 5.4 -2022-12-19

All 58 known CVE vulnerabilities affecting usememos/memos with full Chinese analysis, references, and POCs where available.