CVE-2018-11227: Monstra CMS

Medium severity, CVSS 6.1. EPSS: 4.7% chance of exploitation in the next 30 days.

Monstra CMS 3.0.4 and earlier has XSS via index.php.

Affected products

  • Monstra Monstra CMS: before 3.0.4 (fixed in 3.0.4)

Published 2019-07-03. Last modified 2026-06-17.