CRITICAL9.0
GHSA-8w5q-5fpq-v4pm
usememos/memos Cross-site Scripting vulnerability
Quick fix
GHSA-8w5q-5fpq-v4pm — github.com/usememos/memos: upgrade to the fixed version with the command below.
go get github.com/usememos/memos@v0.9.1Details
Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.9.1.
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/usememos/memos
Introduced in:
0Fixed in: 0.9.1Fix
go get github.com/usememos/memos@v0.9.1