Closed GoVulnBot closed 1 year ago
In GitHub Security Advisory GHSA-pwhr-p68w-296x, there is a vulnerability in the following Go packages or modules:
Cross references: No existing reports found with this module or alias.
See doc/triage.md for instructions on how to triage this report.
modules: - module: TODO versions: - {} packages: - package: github.com/usememos/memos description: Cross-site Scripting (XSS) - Stored in GitHub repository usememos/memos 0.9.0 and prior. cves: - CVE-2022-4840 ghsas: - GHSA-pwhr-p68w-296x
Fix not in Go code.
Needs excluded report
Change https://go.dev/cl/513918 mentions this issue: data/excluded: batch add 26 excluded reports
data/excluded: batch add 26 excluded reports
In GitHub Security Advisory GHSA-pwhr-p68w-296x, there is a vulnerability in the following Go packages or modules:
Cross references: No existing reports found with this module or alias.
See doc/triage.md for instructions on how to triage this report.