Описание
Account TakeOver Due to Improper Handling of JWT Tokens in usememos/memos
Improper Access Control in GitHub repository usememos/memos prior to 0.13.2. As of commit c9aa2eeb9 access tokens which fail validation are rejected.
Пакеты
Наименование
github.com/usememos/memos
go
Затронутые версииВерсия исправления
< 0.13.2
0.13.2
Связанные уязвимости
CVSS3: 9.8
nvd
больше 2 лет назад
Improper Access Control in GitHub repository usememos/memos prior to 0.13.2.