A vulnerability was found in code-projects Invoice System in Laravel 1.0. Affected by this vulnerability is an unknown functionality of the file /invoice/ of the component Invoice Endpoint. Performing a manipulation of the argument ID results in improper authorization. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
Metrics
Affected Vendors & Products
References
History
Mon, 27 Apr 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in code-projects Invoice System in Laravel 1.0. Affected by this vulnerability is an unknown functionality of the file /invoice/ of the component Invoice Endpoint. Performing a manipulation of the argument ID results in improper authorization. The attack is possible to be carried out remotely. The exploit has been made public and could be used. | |
| Title | code-projects Invoice System in Laravel Invoice Endpoint invoice improper authorization | |
| Weaknesses | CWE-266 CWE-285 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-27T06:00:16.743Z
Reserved: 2026-04-26T08:49:04.816Z
Link: CVE-2026-7093
No data.
Status : Received
Published: 2026-04-27T07:16:04.713
Modified: 2026-04-27T07:16:04.713
Link: CVE-2026-7093
No data.