CVE-2023-0112: Cross-site Scripting (XSS) - Stored in usememos/memos
Published Jan 7, 2023
·Updated
Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos prior to 0.10.0.
Affected Software
1 affected component
usememos memos<0.10.0
Remediation
Event History
Jan 7, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-0112?
The severity of CVE-2023-0112 is high with a severity value of 5.4.
2
How does CVE-2023-0112 affect the software?
CVE-2023-0112 affects the software Usememos Memos prior to version 0.10.0.
3
What is the CWE of CVE-2023-0112?
The CWE of CVE-2023-0112 is CWE-79.
4
How can I fix CVE-2023-0112?
To fix CVE-2023-0112, you need to update Usememos Memos to version 0.10.0 or later.
5
Where can I find more information about CVE-2023-0112?
You can find more information about CVE-2023-0112 in the references: [GitHub](https://github.com/usememos/memos/commit/46c13a4b7f675b92d297df6dabb4441f13c7cd9c) and [Huntr](https://huntr.dev/bounties/ec2a29dc-79a3-44bd-a58b-15f676934af6).