mem0 records
5 published records for vendor mem0.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2026-31242No exploit | The mem0 v1.0.0 server lacks authentication and authorization controls for its memory reset functionality accessible via the DELETE /memoriemem0 · mem0 · CWE-306 | Critical9.1 | — | 0.7% | May 12, 2026 |
26Monitor | CVE-2026-31241No exploit | The mem0 1.0.0 server lacks authentication and authorization controls for its memory deletion API endpoint (DELETE /memories).mem0 · mem0 · CWE-306 | Medium6.5 | — | 0.6% | May 12, 2026 |
26Monitor | CVE-2026-31244No exploit | The mem0 1.0.0 server lacks authentication and authorization controls for its memory deletion API endpoint (DELETE /memories/{memory_id}).mem0 · mem0 · CWE-306 | Medium6.5 | — | 0.6% | May 12, 2026 |
26Monitor | CVE-2026-31243No exploit | The mem0 1.0.0 server lacks authentication and authorization controls for its memory reset and table re-creation functionality accessible vimem0 · mem0 · CWE-306 | Medium6.5 | — | 0.5% | May 12, 2026 |
21Monitor | CVE-2026-31245No exploit | The mem0 1.0.0 server lacks authentication and authorization controls for its memory creation API endpoint (POST /memories).mem0 · mem0 · CWE-306 | Medium5.3 | — | 0.5% | May 12, 2026 |
- CVE-2026-3124236Monitor
The mem0 v1.0.0 server lacks authentication and authorization controls for its memory reset functionality accessible via the DELETE /memorie
CriticalCVSS 9.1No exploitEPSS 1%mem0 · mem0May 12, 2026
- CVE-2026-3124126Monitor
The mem0 1.0.0 server lacks authentication and authorization controls for its memory deletion API endpoint (DELETE /memories).
MediumCVSS 6.5No exploitEPSS 1%mem0 · mem0May 12, 2026
- CVE-2026-3124426Monitor
The mem0 1.0.0 server lacks authentication and authorization controls for its memory deletion API endpoint (DELETE /memories/{memory_id}).
MediumCVSS 6.5No exploitEPSS 1%mem0 · mem0May 12, 2026
- CVE-2026-3124326Monitor
The mem0 1.0.0 server lacks authentication and authorization controls for its memory reset and table re-creation functionality accessible vi
MediumCVSS 6.5No exploitEPSS 1%mem0 · mem0May 12, 2026
- CVE-2026-3124521Monitor
The mem0 1.0.0 server lacks authentication and authorization controls for its memory creation API endpoint (POST /memories).
MediumCVSS 5.3No exploitEPSS 0%mem0 · mem0May 12, 2026