Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
Invoiceplane
MEDIUM 6.1
CVE-2023-23011
Cross Site Scripting (XSS) vulnerability in InvoicePlane 1.6 via filter_product input to file modal_product_lookups.php.
No fix yet
Fix from $1,600
2023-02-07
Invoiceplane
MEDIUM 5.3
CVE-2021-29022
In InvoicePlane 1.5.11, the upload feature discloses the full path of the file upload directory.
No fix yet
Fix from $1,600
2021-05-10
Invoiceplane
MEDIUM 6.1
CVE-2018-12255
An XSS issue was discovered in InvoicePlane 1.5.10 via the "Quote PDF Password(Optional)" field.
No fix yet
Fix from $1,600
2018-07-03
Invoiceplane
HIGH 8.8
CVE-2017-1000238
InvoicePlane version 1.4.10 is vulnerable to a Arbitrary File Upload resulting in an authenticated user can upload a malicious file to the webserver.…
No fix yet
Fix from $1,950
2017-11-17
Invoiceplane
MEDIUM 5.4
CVE-2017-1000239
InvoicePlane version 1.4.10 is vulnerable to a Stored Cross Site Scripting resulting in allowing an authenticated user to inject malicious client sid…
No fix yet
Fix from $1,600
2017-11-17