CVE-2024-45989

CVSS 3.1 Score 4 of 10 (medium)

Details

Published Sep 26, 2024
Updated: Sep 30, 2024
CWE ID 77

Summary

CVE-2024-45989: Monica AI Assistant desktop application version 2.3.0 contains a vulnerability. An attacker can manipulate chatbot responses by injecting prompts, leading to the exposure of sensitive chat data during the current session. This information is exfiltrated to an unauthorized third-party or attacker-controlled server. This vulnerability poses a significant risk to user privacy.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share