SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-65499

MEDIUM · CVSS 6.5 EPSS 0.19%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

PeproDev Ultimate Invoice versions up to 2.2.6 are susceptible to unauthenticated broken access control, allowing unauthorized users to access sensitive functionalities or data. This vulnerability could lead to data exposure or manipulation, making it critical for organizations using this software to prioritize remediation efforts. Users of affected versions should assess their security posture and implement necessary controls to mitigate potential risks.

CVE
CVE-2026-65499
Severity
MEDIUM
CVSS
6.5
EPSS
0.19%

Original NVD Description

Unauthenticated Broken Access Control in PeproDev Ultimate Invoice <= 2.2.6 versions.