Code-Projects Invoice System In Laravel vulnerabilities
7 known vulnerabilities affecting code-projects/invoice_system_in_laravel.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM6LOW1
Vulnerabilities
Page 1 of 1
CVE-2026-7107P3MEDIUMCVSS 6.3v1.02026-04-27
CVE-2026-7107 [MEDIUM] CWE-284 CVE-2026-7107: A weakness has been identified in code-projects Invoice System in Laravel 1.0. The impacted element
A weakness has been identified in code-projects Invoice System in Laravel 1.0. The impacted element is an unknown function of the file /company. This manipulation of the argument logo causes unrestricted upload. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks.
nvd
CVE-2026-7092P3MEDIUMCVSS 6.3v1.02026-04-27
CVE-2026-7092 [MEDIUM] CWE-266 CVE-2026-7092: A vulnerability has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknow
A vulnerability has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown function of the file /profile/ of the component Profile Handler. Such manipulation of the argument ID leads to improper authorization. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-7093P3MEDIUMCVSS 6.3v1.02026-04-27
CVE-2026-7093 [MEDIUM] CWE-266 CVE-2026-7093: A vulnerability was found in code-projects Invoice System in Laravel 1.0. Affected by this vulnerabi
A vulnerability was found in code-projects Invoice System in Laravel 1.0. Affected by this vulnerability is an unknown functionality of the file /invoice/ of the component Invoice Endpoint. Performing a manipulation of the argument ID results in improper authorization. The attack is possible to be carried out remotely. The exploit has been made public
nvd
CVE-2026-7091P3MEDIUMCVSS 6.3v1.02026-04-27
CVE-2026-7091 [MEDIUM] CWE-266 CVE-2026-7091: A flaw has been found in code-projects Invoice System in Laravel 1.0. This impacts an unknown functi
A flaw has been found in code-projects Invoice System in Laravel 1.0. This impacts an unknown function of the file /user of the component User Management Handler. This manipulation causes improper authorization. Remote exploitation of the attack is possible. The exploit has been published and may be used.
nvd
CVE-2026-7109P4MEDIUMCVSS 5.3v1.02026-04-27
CVE-2026-7109 [MEDIUM] CWE-266 CVE-2026-7109: A vulnerability was detected in code-projects Invoice System in Laravel 1.0. This impacts an unknown
A vulnerability was detected in code-projects Invoice System in Laravel 1.0. This impacts an unknown function of the file /item of the component API Endpoint. Performing a manipulation results in improper authorization. It is possible to initiate the attack remotely. The exploit is now public and may be used.
nvd
CVE-2026-7108P4MEDIUMCVSS 4.3v1.02026-04-27
CVE-2026-7108 [MEDIUM] CWE-352 CVE-2026-7108: A security vulnerability has been detected in code-projects Invoice System in Laravel 1.0. This affe
A security vulnerability has been detected in code-projects Invoice System in Laravel 1.0. This affects an unknown function. Such manipulation leads to cross-site request forgery. The attack may be performed from remote. The exploit has been disclosed publicly and may be used.
nvd
CVE-2026-7110P4LOWCVSS 3.5v1.02026-04-27
CVE-2026-7110 [LOW] CWE-79 CVE-2026-7110: A flaw has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown functio
A flaw has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown function of the file /item. Executing a manipulation of the argument item name/description can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been published and may be used.
nvd