Description
SQL Injection vulnerability exists in MATCHA INVOICE 2.6.6 and earlier. If this vulnerability is exploited, information stored in the database may be obtained or altered by a user who can log in to the product.
CVSS 8.8EPSS 0.301%Risk 0.9
View source- Published
- 2026-04-08 06:16:27
- Affected versions
- <=2.6.6
- Type
- Other
- Last modified
- 2026-07-25 10:10:00
- Vector
- CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H