Skip to content
mem0GHSA-xqxw-r767-67m7

mem0ai mem0 has an Improper Input Validation Issue

Low6.3CVE-2026-7597 · Published May 2, 2026 · updated Jul 13, 2026

A vulnerability was found in mem0ai mem0 up to 1.0.11. This affects the function pickle.load/pickle.dump of the file mem0/vector_stores/faiss.py. Performing a manipulation results in deserialization. It is possible to initiate the attack remotely. The exploit has been made public and could be used. The patch is named 62dca096f9236010ca15fea9ba369ba740b86b7a. Applying a patch is the recommended action to fix this issue.

GitHub advisory

Affected versions

PackageAffectedFixed in
mem0ai
PyPI
< 2.0.0b22.0.0b2
Details and references

More mem0 advisories

All mem0

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.