SolidInvoice 是一个开源的发票管理平台。在版本 3.0.1 之前, 实时组件在从客户端接收 属性值后,使用 PHP 的 函数对其进行反序列化。由于该属性被标记为 ,经过身份验证的攻击者可以提交任意的 PHP 序列化数据负载。该问题已在版本 3.0.1 中修复。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| SolidInvoice | SolidInvoice | < 3.0.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SolidInvoice | SolidInvoice | < 3.0.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-61608 | 6.8 MEDIUM | SolidInvoice's user invitation tokens have no expiry, allowing indefinite unauthorized com |
| CVE-2026-61688 | 6.5 MEDIUM | SolidInvoice allows cross-user access to API token request history via writable DataGrid L |
| CVE-2026-61614 | 5.9 MEDIUM | SolidInvoice's long-lived API tokens accepted as URL query parameters, exposing credential |
No comments yet