CVE-2024-54951
13.02.2025, 23:15
Monica 4.1.2 is vulnerable to Cross Site Scripting (XSS). A malicious user can create a malformed contact and use that contact in the "HOW YOU MET" customization options to trigger the XSS.
Awaiting analysis
This vulnerability is currently awaiting analysis.