CVE-2026-31241
medium
CVSS v3
6.5
CVSS v2
—
VIR risk
6.5
Description
mem0 server lacks authentication and authorization controls for its memory deletion API endpoint
Predictions
Exploit likelihood
75%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — https://www.notion.so/CVE-2026-31241-35d1e139318881459ae5e6f0d7dc6f0f
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| mem0 | mem0 | 1.0.0 | |
References
CWEs
CWE-306 CWE-862
Verify integrity in audit chain (admin only). AS-IS.