blob: 085e412685477c9a744fc708d7c2db4ca85231ee [file] [log] [blame]
id: GO-2025-3831
modules:
- module: github.com/usememos/memos
versions:
- fixed: 0.24.4
vulnerable_at: 0.24.3
summary: Memos has Cross-Site Scripting (XSS) Vulnerability in Image URLs in github.com/usememos/memos
cves:
- CVE-2025-50738
ghsas:
- GHSA-hfcf-79gh-f3jc
references:
- advisory: https://github.com/advisories/GHSA-hfcf-79gh-f3jc
- advisory: https://nvd.nist.gov/vuln/detail/CVE-2025-50738
- fix: https://github.com/usememos/memos/commit/46d5307d7f210067b46e07400a728fa9095803d9
- report: https://github.com/usememos/memos/issues/4707#issuecomment-2898504237
source:
id: GHSA-hfcf-79gh-f3jc
created: 2025-08-06T19:54:37.54512097Z
review_status: UNREVIEWED