Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.1.
References
Link | Resource |
---|---|
https://github.com/usememos/memos/commit/3556ae4e651d9443dc3bb8a170dd3cc726517a53 | Patch Third Party Advisory |
https://huntr.dev/bounties/e12eed25-1a8e-4ee1-b846-2d4df1db2fae | Exploit Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: @huntrdev
Published: 2022-12-28T00:00:00
Updated: 2023-03-02T00:00:00
Reserved: 2022-12-28T00:00:00
Link: CVE-2022-4798
JSON object: View
NVD Information
Status : Modified
Published: 2022-12-28T14:15:10.367
Modified: 2023-03-02T01:15:10.373
Link: CVE-2022-4798
JSON object: View
Redhat Information
No data.
CWE