Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Allevon412

#47268of 53,624
5.4Total CVSS
Vulnerabilities · 1
PT-2025-6719
5.4
2025-02-13
Monica · Monica · CVE-2024-54951
**Name of the Vulnerable Software and Affected Versions** Monica version 4.1.2 **Description** The issue allows a malicious user to create a malformed contact and use it in the "HOW YOU MET" customization options to trigger Cross Site Scripting (XSS). **Recommendations** For Monica version 4.1.2, as a temporary workaround, consider restricting the use of the "HOW YOU MET" customization options until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.