MEDIUM5.4
GHSA-pcvh-px2p-vmxw
usememos/memos vulnerable to stored Cross-site Scripting
Quick fix
GHSA-pcvh-px2p-vmxw — github.com/usememos/memos: upgrade to the fixed version with the command below.
go get github.com/usememos/memos@v0.10.0Details
Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/usememos/memos
Introduced in:
0Fixed in: 0.10.0Fix
go get github.com/usememos/memos@v0.10.0