usememos/memos is an open-source, self-hosted memo hub with knowledge management and socialization. Memos prior to 0.9.0 is missing the Secure cookie attribute, making it vulnerable to session hijacking.
{
"github_reviewed_at": "2022-12-27T02:21:22Z",
"github_reviewed": true,
"severity": "MODERATE",
"nvd_published_at": "2022-12-23T12:15:00Z",
"cwe_ids": [
"CWE-311",
"CWE-319",
"CWE-614"
]
}