CVE-2026-54790

CVE-2026-54790 published: InvoicePlane is a self-hosted open source application for managing invoices, clients, and payments. Prior to 1.7.2, InvoicePlane stores an administrator-controlled custom_field_table value without validating it against the allowed custom-field table names. ...

View full NVD advisory → ← Back to CVE watch