Описание
MonicaHQ v4.1.2 was discovered to contain multiple Client-Side Injection vulnerabilities via the first_name and last_name parameters in the Add a new relationship feature.
Ссылки
- Product
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:monicahq:monica:4.1.2:*:*:*:*:*:*:*
EPSS
Процентиль: 30%
0.00111
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-79
Связанные уязвимости
CVSS3: 6.5
github
около 1 года назад
MonicaHQ v4.1.2 was discovered to contain multiple Client-Side Injection vulnerabilities via the first_name and last_name parameters in the Add a new relationship feature.
EPSS
Процентиль: 30%
0.00111
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-79