CVE-2024-29028

CVSS V2 None CVSS V3 None
Description
memos is a privacy-first, lightweight note-taking service. In memos 0.13.2, an SSRF vulnerability exists at the /o/get/httpmeta that allows unauthenticated users to enumerate the internal network and receive limited html values in json form. This vulnerability is fixed in 0.16.1.
Overview
  • CVE ID
  • CVE-2024-29028
  • Assigner
  • GitHub_M
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-04-19T15:14:02.607Z
  • Last Modified Date
  • 2024-04-19T15:20:19.205Z
History
Created Old Value New Value Data Type Notes
2024-06-26 02:36:59 Added to TrackCVE