Incorrectly Specified Destination in a Communication Channel in GitHub repository usememos/memos prior to 0.9.1.
The product creates a communication channel to initiate an outgoing request to an actor, but it does not correctly specify the intended destination for that actor.
Link | Tags |
---|---|
https://huntr.dev/bounties/ff6d4b5a-5e75-4a14-b5ce-f318f8613b73 | exploit third party advisory patch |
https://github.com/usememos/memos/commit/c9bb2b785dc5852655405d5c9ab127a2d5aa3948 | third party advisory patch |