Improper Removal of Sensitive Information Before Storage or Transfer in GitHub repository usememos/memos prior to 0.9.1.
The product stores, transfers, or shares a resource that contains sensitive information, but it does not properly remove that information before the product makes the resource available to unauthorized actors.
Link | Tags |
---|---|
https://huntr.dev/bounties/4b4421dc-73af-4dec-884c-836f9732cb5b | third party advisory exploit |
https://github.com/usememos/memos/commit/05b41804e33a34102f1f75bb2d69195dda6a1210 | third party advisory patch |