{ "schema_version": "1.3.1", "id": "GO-2022-1245", "modified": "0001-01-01T00:00:00Z", "published": "0001-01-01T00:00:00Z", "aliases": [ "CVE-2022-4804", "GHSA-qw36-rw5q-gxcq" ], "summary": "usememos/memos Improper Authorization vulnerability in github.com/usememos/memos", "details": "usememos/memos Improper Authorization vulnerability in github.com/usememos/memos", "affected": [ { "package": { "name": "github.com/usememos/memos", "ecosystem": "Go" }, "ranges": [ { "type": "SEMVER", "events": [ { "introduced": "0" }, { "fixed": "0.9.1" } ] } ], "ecosystem_specific": {} } ], "references": [ { "type": "ADVISORY", "url": "https://github.com/advisories/GHSA-qw36-rw5q-gxcq" }, { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-4804" }, { "type": "FIX", "url": "https://github.com/usememos/memos/commit/3556ae4e651d9443dc3bb8a170dd3cc726517a53" }, { "type": "WEB", "url": "https://huntr.dev/bounties/4ee48a1e-6332-4d95-a360-9c392643c533" } ], "database_specific": { "url": "https://pkg.go.dev/vuln/GO-2022-1245", "review_status": "UNREVIEWED" } }