The number and severity of CVEs published that impact products developed by Mem0 over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-31242CRITICAL The mem0 v1.0.0 server lacks authentication and authorization controls for its memory reset functionality accessible via the DELETE /memories endpoint. An unauthenticated attacker | May 12, 2026 | 9.1 | 30 | NO | NO |
CVE-2026-31244MEDIUM The mem0 1.0.0 server lacks authentication and authorization controls for its memory deletion API endpoint (DELETE /memories/{memory_id}). The endpoint allows unauthenticated users | May 12, 2026 | 6.5 | 24 | NO | NO |
CVE-2026-31243MEDIUM The mem0 1.0.0 server lacks authentication and authorization controls for its memory reset and table re-creation functionality accessible via the DELETE /memories endpoint. An unau | May 12, 2026 | 6.5 | 24 | NO | NO |
CVE-2026-31241MEDIUM The mem0 1.0.0 server lacks authentication and authorization controls for its memory deletion API endpoint (DELETE /memories). The endpoint allows unauthenticated users to delete m | May 12, 2026 | 6.5 | 24 | NO | NO |
CVE-2026-31245MEDIUM The mem0 1.0.0 server lacks authentication and authorization controls for its memory creation API endpoint (POST /memories). The endpoint allows unauthenticated users to submit arb | May 12, 2026 | 5.3 | 21 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mem0.
Media articles that mention a CVE ID that affects a product developed by Mem0 — matched by CVE ID, not by vendor name.