Peprodev
Peprodev Ultimate Invoice: vulnerabilidades y CVE
Peprodev Ultimate Invoice tiene 7 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses5
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-65516 | Alta (7.2) | 0.27% | — | 23 jul 2026 | Unauthenticated Server Side Request Forgery (SSRF) in PeproDev Ultimate Invoice <= 2.2.6 versions. |
| CVE-2026-65510 | Alta (7.1) | 0.25% | — | 23 jul 2026 | Unauthenticated Cross Site Scripting (XSS) in PeproDev Ultimate Invoice <= 2.2.6 versions. |
| CVE-2026-65499 | Media (6.5) | 0.27% | — | 23 jul 2026 | Unauthenticated Broken Access Control in PeproDev Ultimate Invoice <= 2.2.6 versions. |
| CVE-2026-27372 | Media (6.5) | 0.37% | — | 23 jul 2026 | Unauthenticated Sensitive Data Exposure in PeproDev Ultimate Invoice <= 2.2.6 versions. |
| CVE-2026-2343 | Media (5.3) | 0.20% | — | 25 mar 2026 | The PeproDev Ultimate Invoice WordPress plugin through 2.2.5 has a bulk download invoices action that generates ZIP archives containing exported invoice PDFs. The ZIP files are named predictably making it possible to… |
| CVE-2024-32518 | Media (5.3) | 0.38% | — | 17 abr 2024 | Missing Authorization vulnerability in Pepro Dev. Group PeproDev Ultimate Invoice.This issue affects PeproDev Ultimate Invoice: from n/a through 2.0.0. |
| CVE-2024-25933 | Alta (7.5) | 0.45% | — | 17 mar 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pepro Dev. Group PeproDev Ultimate Invoice.This issue affects PeproDev Ultimate Invoice: from n/a through 1.9.7. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.