Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 03 Apr 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Server‑Side Request Forgery in Invoice Ninja Setup Request Handler |
Thu, 02 Apr 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:invoiceninja:invoice_ninja:5.12.46:*:*:*:*:*:*:* cpe:2.3:a:invoiceninja:invoice_ninja:5.12.48:*:*:*:*:*:*:* |
Wed, 01 Apr 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Server‑Side Request Forgery in Invoice Ninja 5.12.46 and 5.12.48 | Server‑Side Request Forgery in Invoice Ninja Setup Request Handler |
| First Time appeared |
Invoiceninja
Invoiceninja invoice Ninja |
|
| Vendors & Products |
Invoiceninja
Invoiceninja invoice Ninja |
Tue, 31 Mar 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Server‑Side Request Forgery in Invoice Ninja 5.12.46 and 5.12.48 |
Mon, 30 Mar 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-918 | |
| Metrics |
cvssV3_1
|
Mon, 30 Mar 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Invoice Ninja v5.12.46 and v5.12.48 is vulnerable to Server-Side Request Forgery (SSRF) in CheckDatabaseRequest.php. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-03-30T19:16:34.202Z
Reserved: 2026-03-04T00:00:00.000Z
Link: CVE-2026-29925
Updated: 2026-03-30T19:14:39.547Z
Status : Analyzed
Published: 2026-03-30T19:16:24.600
Modified: 2026-04-02T16:58:36.137
Link: CVE-2026-29925
No data.
OpenCVE Enrichment
Updated: 2026-04-03T09:38:21Z