{ "id": "CVE-2024-36773", "sourceIdentifier": "cve@mitre.org", "published": "2024-06-07T15:15:50.063", "lastModified": "2024-06-07T15:15:50.063", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "A cross-site scripting (XSS) vulnerability in Monstra CMS v3.0.4 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Themes parameter at index.php." } ], "metrics": {}, "references": [ { "url": "https://github.com/OoLs5/VulDiscovery/blob/main/cve-2024-36773.md", "source": "cve@mitre.org" } ] }