Get a Demo

Let's Patch It!

Book a short call with one our specialists, we'll walk you through how Endor Patches work, and ask you a few questions about your environment (like your primary programming languages and repository management). We'll also send you an email right after you fill out the form, feel free to reply with any questions you have in advance!

CVE

CVE-2026-59705

mem0 - OpenMemory API Unauthenticated Access via Memory Endpoints
Back to all
CVE

CVE-2026-59705

mem0 - OpenMemory API Unauthenticated Access via Memory Endpoints

mem0's openmemory/api component contains an unauthenticated access vulnerability that allows unauthenticated attackers to read, write, and delete arbitrary user memories by accessing API routers registered without authentication middleware. Attackers can supply arbitrary userid parameters or directly access memory retrieval endpoints to expose private memory content, or invoke pause endpoints with globalpause=true to cause denial-of-service across all users.

Package Versions Affected

Package Version
patch Availability
No items found.

Automatically patch vulnerabilities without upgrading

Fix Without Upgrading
Detect compatible fix
Apply safe remediation
Fix with a single pull request

CVSS Version

Severity
Base Score
CVSS Version
Score Vector
C
H
U
9.3
-
4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
C
H
U
0
-
C
H
U
-

Related Resources

No items found.

References

https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/59xxx/CVE-2026-59705.json, https://nvd.nist.gov/vuln/detail/CVE-2026-59705, https://www.vulncheck.com/advisories/mem0-openmemory-api-unauthenticated-access-via-memory-endpoints, https://github.com/mem0ai/mem0/issues/6080, https://github.com/mem0ai/mem0/commit/a3154d59e52386d4e1189c1f5f44819868f76514, https://github.com/mem0ai/mem0

Severity

0

CVSS Score
0
10

Basic Information

Base CVSS
0
EPSS Probability
0.00498%
EPSS Percentile
0.40739%
Introduced Version
0
Fix Available
a3154d59e52386d4e1189c1f5f44819868f76514

Fix Critical Vulnerabilities Instantly

Secure your app without upgrading.
Fix Without Upgrading