CVE-2018-11227: Monstra CMS
Medium severity, CVSS 6.1. EPSS: 4.7% chance of exploitation in the next 30 days.
Monstra CMS 3.0.4 and earlier has XSS via index.php.
Affected products
- Monstra Monstra CMS: before 3.0.4 (fixed in 3.0.4)
Published 2019-07-03. Last modified 2026-06-17.