monta.app
4 known vulnerabilities in monta.app, 1 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-97363 CVSS 8.7 high The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests. This absence of rate limiting…
- CVE-2026-97212 CVSS 6.9 medium The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the…
- CVE-2026-95102 CVSS 9.3 critical WebSocket endpoints lack proper authentication mechanisms, enabling attackers to impersonate charging stations. As a result, attackers can…
- CVE-2026-93474 CVSS 6.9 medium Charging station authentication identifiers are publicly accessible via web-based mapping platforms.