A weakness has been identified in thedotmack claude-mem up to 11.0.1. The affected element is the function computeObservationContentHash of the file src/services/sqlite/observations/store.ts of the component Observation Content Hash Handler. This manipulation causes use of weak hash. The attack can only be executed locally. The attack's complexity is rated as high. The exploitability is described as difficult. Upgrading to version 12.0.0 is sufficient to fix this issue. Patch name: f32fda8b35e9fe9329f87da65c31149362a03f97. It is suggested to upgrade the affected component.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Jun 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A weakness has been identified in thedotmack claude-mem up to 11.0.1. The affected element is the function computeObservationContentHash of the file src/services/sqlite/observations/store.ts of the component Observation Content Hash Handler. This manipulation causes use of weak hash. The attack can only be executed locally. The attack's complexity is rated as high. The exploitability is described as difficult. Upgrading to version 12.0.0 is sufficient to fix this issue. Patch name: f32fda8b35e9fe9329f87da65c31149362a03f97. It is suggested to upgrade the affected component. | |
| Title | thedotmack claude-mem Observation Content Hash store.ts computeObservationContentHash weak hash | |
| First Time appeared |
Thedotmack
Thedotmack claude-mem |
|
| Weaknesses | CWE-327 CWE-328 |
|
| CPEs | cpe:2.3:a:thedotmack:claude-mem:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Thedotmack
Thedotmack claude-mem |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-06-05T12:45:12.204Z
Updated: 2026-06-05T12:45:12.204Z
Reserved: 2026-06-05T06:56:10.993Z
Link: CVE-2026-11330
No data.
Status : Deferred
Published: 2026-06-05T14:16:35.457
Modified: 2026-06-05T14:59:31.207
Link: CVE-2026-11330
No data.