A vulnerability was found in usememos Memos 0.27.1 and classified as critical. Impacted is the function SignIn of the file server/router/api/v1/auth_service.go of the component SSO Authentication. The manipulation results in improper authentication.

This vulnerability is known as CVE-2026-51584. It is possible to launch the attack remotely. No exploit is available.