8.8
CVSSv3

CVE-2023-1031

Published: 08/05/2023 Updated: 16/05/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

MonicaHQ version 4.0.0 allows an authenticated remote malicious user to execute malicious code in the application via CSTI in the `settings` endpoint and first_name parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

monicahq monica 4.0.0