Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-qrrf-xvcf-p64q: usememos/memos vulnerable Improper Restriction of Excessive Authentication Attempts

In usememos/memos 0.9.0 and prior, an attacker can delete other users’ posts via post id, which can be done via brute force.

ghsa
#git#auth

usememos/memos vulnerable Improper Restriction of Excessive Authentication Attempts

High severity GitHub Reviewed Published Dec 28, 2022 • Updated Dec 30, 2022

ghsa: Latest News

GHSA-3m86-c9x3-vwm9: Graylog vulnerable to privilege escalation through API tokens