Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 27 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects invoice System In Laravel |
|
| Vendors & Products |
Code-projects
Code-projects invoice System In Laravel |
Mon, 27 Apr 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 27 Apr 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in code-projects Invoice System in Laravel 1.0. Affected by this vulnerability is an unknown functionality of the file /invoice/ of the component Invoice Endpoint. Performing a manipulation of the argument ID results in improper authorization. The attack is possible to be carried out remotely. The exploit has been made public and could be used. | |
| Title | code-projects Invoice System in Laravel Invoice Endpoint invoice improper authorization | |
| Weaknesses | CWE-266 CWE-285 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-27T12:28:25.623Z
Reserved: 2026-04-26T08:49:04.816Z
Link: CVE-2026-7093
Updated: 2026-04-27T12:28:21.890Z
Status : Deferred
Published: 2026-04-27T07:16:04.713
Modified: 2026-04-29T01:00:01.613
Link: CVE-2026-7093
No data.
OpenCVE Enrichment
Updated: 2026-04-28T05:00:14Z