Package impact

php COMPOSER / facturascripts/facturascripts

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Published Description Impact
CVE-2026-27891 high 7.2 7.2 21d ago FacturaScripts Vulnerable to Remote Code Execution (RCE) via Zip Slip in Plugin Upload Mechanism php
CVE-2026-27892 medium 6.5 6.5 21d ago FacturaScripts Vulnerable to Unstripped Image Metadata (EXIF) Leakage via Library Module File Upload/Download php
CVE-2026-42879 medium 6.3 6.3 21d ago FacturaScripts Vulnerable to Authenticated Remote Code Execution (RCE) via GIF Image Upload in Product Images php
CVE-2026-32699 medium 5.5 1mo ago FacturaScripts has Insecure Parameter Handling: Unauthorized Modification of Immutable 'nick' Field php
CVE-2026-42877 medium 5.4 5.4 21d ago FacturaScripts vulnerable to stored XSS via product reference in sales/purchases php
CVE-2026-42878 medium 5.3 5.3 21d ago FacturaScripts Vulnerable to Unauthenticated phpinfo() Disclosure via Installer Endpoint php
CVE-2026-27964 low 3.9 3.9 21d ago FacturaScripts vulnerable to Reflected Cross-Site Scripting (XSS) via Cookie Manipulation php