CVE-2022-4844: Cross-Site Request Forgery (CSRF) in usememos/memos
Published Dec 29, 2022
·Updated
Cross-Site Request Forgery (CSRF) in GitHub repository usememos/memos prior to 0.9.1.
Affected Software
1 affected component
usememos memos<0.9.1
Remediation
Event History
Dec 29, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-4844?
CVE-2022-4844 is a vulnerability related to Cross-Site Request Forgery (CSRF) in the GitHub repository usememos/memos prior to version 0.9.1.
2
What is the severity of CVE-2022-4844?
The severity of CVE-2022-4844 is high, with a severity value of 8.8.
3
How does CVE-2022-4844 affect the Usememos Memos software?
CVE-2022-4844 affects the Usememos Memos software prior to version 0.9.1.
4
What is Cross-Site Request Forgery (CSRF)?
Cross-Site Request Forgery (CSRF) is a type of attack where an attacker tricks a victim into performing unwanted actions on their behalf in a web application.
5
How can I fix CVE-2022-4844?
To fix CVE-2022-4844, update the Usememos Memos software to version 0.9.1 or later.