VYPR

Easy Invoice

Sign in to watch

by WordPress

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2025-6324Hig0.467.10.00Dec 18, 2025Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MatrixAddons Easy Invoice easy-invoice allows DOM-Based XSS.This issue affects Easy Invoice: from n/a through <= 2.0.9.
CVE-2025-66115Med0.436.60.00Nov 21, 2025Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in MatrixAddons Easy Invoice easy-invoice allows PHP Local File Inclusion.This issue affects Easy Invoice: from n/a through <= 2.1.4.