Package impact

php COMPOSER / facturascripts/facturascripts

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-27891 high 7.2 7.2 28d ago FacturaScripts Vulnerable to Remote Code Execution (RCE) via Zip Slip in Plugin Upload Mechanism
CVE-2026-27892 medium 6.5 6.5 28d ago FacturaScripts Vulnerable to Unstripped Image Metadata (EXIF) Leakage via Library Module File Upload/Download
CVE-2026-42879 medium 6.3 6.3 27d ago FacturaScripts is an open source accounting and invoicing software. In 2025.81 and earlier, an authenticated unrestricted file upload vulnerability exists in FacturaScripts' product image upload func…
CVE-2026-32699 medium 5.5 1mo ago FacturaScripts has Insecure Parameter Handling: Unauthorized Modification of Immutable 'nick' Field
CVE-2026-42877 medium 5.4 5.4 28d ago FacturaScripts is an open source accounting and invoicing software. In 2025.92 and earlier, a stored Cross-Site Scripting (XSS) vulnerability exists in the product search modal of sales (Core/Lib/Aja…
CVE-2026-42878 medium 5.3 5.3 27d ago FacturaScripts is an open source accounting and invoicing software. Prior to v2026, an unauthenticated information disclosure vulnerability in the Installer controller allows any remote attacker to t…