Medium severity5.4OSV Advisory· Published Jan 3, 2018· Updated Jun 17, 2026
CVE-2017-1000466
CVE-2017-1000466
Description
Invoice Ninja version 3.8.1 is vulnerable to stored cross-site scripting vulnerability, within the invoice creation page, which can result in disruption of service and execution of javascript code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3=3.8.1+ 2 more
- (no CPE)range: =3.8.1
- (no CPE)range: v1.0.2, v1.0.3, v1.1.0, …
- cpe:2.3:a:invoiceninja:invoice_ninja:3.8.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- github.com/invoiceninja/invoiceninja/issues/1727nvdExploitIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.