Package impact

php COMPOSER / facturascripts/facturascripts

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-27892 medium 6.5 6.5 21d ago FacturaScripts Vulnerable to Unstripped Image Metadata (EXIF) Leakage via Library Module File Upload/Download
CVE-2026-42879 medium 6.3 6.3 21d ago FacturaScripts Vulnerable to Authenticated Remote Code Execution (RCE) via GIF Image Upload in Product Images
CVE-2026-32699 medium 5.5 1mo ago FacturaScripts has Insecure Parameter Handling: Unauthorized Modification of Immutable 'nick' Field
CVE-2026-42877 medium 5.4 5.4 21d ago FacturaScripts is an open source accounting and invoicing software. In 2025.92 and earlier, a stored Cross-Site Scripting (XSS) vulnerability exists in the product search modal of sales (Core/Lib/Aja…
CVE-2026-42878 medium 5.3 5.3 21d ago FacturaScripts is an open source accounting and invoicing software. Prior to v2026, an unauthenticated information disclosure vulnerability in the Installer controller allows any remote attacker to t…
CVE-2026-27964 low 3.9 3.9 21d ago FacturaScripts vulnerable to Reflected Cross-Site Scripting (XSS) via Cookie Manipulation