SolidInvoice 是一个开源的发票管理平台。在 3.0.1 版本之前, 实体没有过期时间戳。这意味着通过邮件发送给用户的邀请链接永久有效,因此泄漏、转发或存档的邀请邮件可以在未来的任何时间被用来加入公司,或者悄无声息地将一个已被入侵的邮箱账号添加到公司中。该问题已在 3.0.1 版本中修复。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| SolidInvoice | SolidInvoice | < 3.0.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SolidInvoice | SolidInvoice | < 3.0.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-61686 | 7.5 HIGH | SolidInvoice: PHP unserialize() called on client-controlled data in DataGrid LiveComponent |
| CVE-2026-61688 | 6.5 MEDIUM | SolidInvoice allows cross-user access to API token request history via writable DataGrid L |
| CVE-2026-61614 | 5.9 MEDIUM | SolidInvoice's long-lived API tokens accepted as URL query parameters, exposing credential |
No comments yet