---
id: CVE-2026-7597
aliases:
  - GHSA-xqxw-r767-67m7
  - PYSEC-2026-2636
title: mem0ai mem0 has an Improper Input Validation Issue
summary: mem0ai mem0 has an Improper Input Validation Issue
severity: medium
cvss: 6.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
vendor: mem0ai
product: mem0ai
ecosystem: pip
affected:
  - mem0ai < 2.0.0b2
patched:
  - mem0ai 2.0.0b2
published: '2026-05-02'
updated: '2026-07-13'
source: OSV
sourceUrl: 'https://osv.dev/vulnerability/GHSA-xqxw-r767-67m7'
references:
  - url: 'https://nvd.nist.gov/vuln/detail/CVE-2026-7597'
  - url: 'https://github.com/mem0ai/mem0/issues/3778'
  - url: 'https://github.com/mem0ai/mem0/pull/4833'
  - url: >-
      https://github.com/mem0ai/mem0/commit/62dca096f9236010ca15fea9ba369ba740b86b7a
  - url: 'https://github.com/mem0ai/mem0'
  - url: 'https://vuldb.com/submit/805562'
  - url: 'https://vuldb.com/vuln/360550'
  - url: 'https://vuldb.com/vuln/360550/cti'
tags:
  - osv
  - pip
epss: 0.00315
epssPercentile: 0.2469
ingestedAt: '2026-07-13T18:58:05.315Z'
---

## Overview

A vulnerability was found in mem0ai mem0 up to 1.0.11. This affects the function pickle.load/pickle.dump of the file mem0/vector_stores/faiss.py. Performing a manipulation results in deserialization. It is possible to initiate the attack remotely. The exploit has been made public and could be used. The patch is named 62dca096f9236010ca15fea9ba369ba740b86b7a. Applying a patch is the recommended action to fix this issue.

## Affected packages

- `mem0ai < 2.0.0b2`

## Remediation

Upgrade to a patched release:

- `mem0ai 2.0.0b2`
