| id: GO-2022-1240 | 
 | modules: | 
 |     - module: github.com/usememos/memos | 
 |       versions: | 
 |         - fixed: 0.9.1 | 
 |       vulnerable_at: 0.9.0 | 
 | summary: |- | 
 |     usememos/memos vulnerable to Improper Verification of Source of a Communication | 
 |     Channel in github.com/usememos/memos | 
 | cves: | 
 |     - CVE-2022-4800 | 
 | ghsas: | 
 |     - GHSA-mfvq-m3jj-8864 | 
 | references: | 
 |     - advisory: https://github.com/advisories/GHSA-mfvq-m3jj-8864 | 
 |     - advisory: https://nvd.nist.gov/vuln/detail/CVE-2022-4800 | 
 |     - fix: https://github.com/usememos/memos/commit/3556ae4e651d9443dc3bb8a170dd3cc726517a53 | 
 |     - web: https://huntr.dev/bounties/aa45a6eb-cc38-45e5-a301-221ef43c0ef8 | 
 | source: | 
 |     id: GHSA-mfvq-m3jj-8864 | 
 |     created: 2024-08-20T14:55:25.072888-04:00 | 
 | review_status: UNREVIEWED | 
 | unexcluded: EFFECTIVELY_PRIVATE |