CVE-2022-4686: Usememos Memos

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

Authorization Bypass Through User-Controlled Key in GitHub repository usememos/memos prior to 0.9.0.

Affected products

  • Usememos Memos: before 0.9.0 (fixed in 0.9.0)

Published 2022-12-23. Last modified 2026-06-17.