A vulnerability classified as critical was found in MonicaHQ 4.1.2. This vulnerability affects unknown code of the component Add a new relationship. The manipulation of the argument first_name/last_name leads to injection.
This vulnerability was named CVE-2024-54994. Access to the local network is required for this attack to succeed. There is no exploit available.