Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
monicahq vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2023-1094
MonicaHQ version 4.0.0 allows an authenticated remote malicious user to execute malicious code in the application via CSTI in the `people:id/food` endpoint and food parameter.
Monicahq Monica 4.0.0
5.4
CVSSv3
CVE-2021-27371
The Contact page in Monica 2.19.1 allows stored XSS via the Description field.
Monicahq Monica 2.19.1
5.4
CVSSv3
CVE-2023-50465
A stored cross-site scripting (XSS) vulnerability exists in Monica (aka MonicaHQ) 4.0.0 via an SVG document uploaded by an authenticated user.
Monicahq Monica 0.4.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23692
malicious code
XML injection
CVE-2024-28020
CVE-2024-35252
CVE-2024-5833
CVE-2024-30066
injection
CVE-2024-23282
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2