CVE-2018-6550
Monstra CMS through 3.0.4 has XSS in the title function in plugins/box/pages/pages.plugin.php via a page title to admin/index.php.
Date published : 2018-02-02
https://github.com/monstra-cms/monstra/commit/388ab412035474068758df6b07e7e06852f3747b