Invoiceninja

Invoice Ninja

12 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.2%
  • Veröffentlicht 05.08.2026 10:56:18
  • Zuletzt bearbeitet 10.08.2026 12:17:25

InvoiceNinja v5-stable renders an invoice or quote's "terms" field in the client portal using Laravel Blade's raw output directive {!! ->terms !!} (resources/views/portal/ninja2020/invoices/includes/terms.blade.php) with no HTML sanitization.

Exploit
  • EPSS 0.18%
  • Veröffentlicht 30.06.2026 21:07:25
  • Zuletzt bearbeitet 14.07.2026 23:17:30

Invoice Ninja through 5.13.26 contains an open redirect vulnerability in the client portal login that allows unauthenticated attackers to redirect authenticated victims to attacker-controlled external URLs by injecting a malicious value into the inte...

Exploit
  • EPSS 0.32%
  • Veröffentlicht 30.03.2026 00:00:00
  • Zuletzt bearbeitet 02.04.2026 16:58:36

Invoice Ninja v5.12.46 and v5.12.48 is vulnerable to Server-Side Request Forgery (SSRF) in CheckDatabaseRequest.php.

Exploit
  • EPSS 0.2%
  • Veröffentlicht 26.03.2026 20:50:21
  • Zuletzt bearbeitet 30.03.2026 17:02:40

Invoice Ninja is a source-available invoice, quote, project and time-tracking app built with Laravel. Product notes fields in Invoice Ninja v5.13.0 allow raw HTML via Markdown rendering, enabling stored XSS. The Markdown parser output was not sanitiz...

  • EPSS 0.23%
  • Veröffentlicht 26.03.2026 20:48:45
  • Zuletzt bearbeitet 30.03.2026 17:24:09

Invoice Ninja is a source-available invoice, quote, project and time-tracking app built with Laravel. Invoice line item descriptions in Invoice Ninja v5.13.0 bypass the XSS denylist filter, allowing stored XSS payloads to execute when invoices are re...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 07.01.2026 00:32:07
  • Zuletzt bearbeitet 29.04.2026 01:00:01

A security vulnerability has been detected in invoiceninja up to 5.12.38. The affected element is the function copy of the file /app/Jobs/Util/Import.php of the component Migration Import. The manipulation of the argument company_logo leads to server...

  • EPSS 0.14%
  • Veröffentlicht 26.08.2025 12:23:04
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Invoice Ninja's configuration on macOS, specifically the presence of entitlement "com.apple.security.get-task-allow", allows local attackers with unprivileged access (e.g. via a malicious application) to attach a debugger, read or modify the process ...

  • EPSS 0.4%
  • Veröffentlicht 14.01.2025 19:15:32
  • Zuletzt bearbeitet 14.07.2026 23:17:18

Invoice Ninja is vulnerable to authenticated Server-Side Request Forgery (SSRF) allowing for arbitrary file read and network resource requests as the application user. This issue affects Invoice Ninja: from 5.8.56 through 5.11.23.

  • EPSS 6.61%
  • Veröffentlicht 07.01.2025 17:15:30
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Invoice Ninja before 5.10.43 allows remote code execution from a pre-authenticated route when an attacker knows the APP_KEY. This is exacerbated by .env files, available from the product's repository, that have default APP_KEY values. The route/{hash...

Exploit
  • EPSS 0.59%
  • Veröffentlicht 24.12.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 06:23:17

invoiceninja is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')