Vulnerability Description
Cross Site Scripting vulnerability in usememos Memos v.0.26.0 allows a remote attacker to obtain sensitive information via the SANITIZE_SCHEMA, Memo Rendering Component, and Public/Private Memo View pages
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://gist.github.com/gabdevele/1dd393955d3ca7d937776fdca9412f0c
- https://github.com/usememos/memos/blob/e1c8101d29ccf382c07673934e1d9a311480c25a/
- https://gist.github.com/gabdevele/1dd393955d3ca7d937776fdca9412f0c
FAQ
What is CVE-2026-30586?
CVE-2026-30586 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Cross Site Scripting vulnerability in usememos Memos v.0.26.0 allows a remote attacker to obtain sensitive information via the SANITIZE_SCHEMA, Memo Rendering Component, and Public/Private Memo View p...
How severe is CVE-2026-30586?
CVE-2026-30586 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-30586?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.