Stored XSS while creating a new post in usememos/memos
Dec 19th 2022
After login create a new post and type the following text with XSS payload
XSS in create post (http://test.cc)
then click post that will be executed.
Proof of Concept
XSS in create post [te<img src=x onerror=alert(1)>te](http://google.com)
Users account takeover + admin