← Back

Client Invoicing By Sprout Invoices

client_invoicing_by_sprout_invoices

Vendor: Webventures • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Webventures
1Client Invoicing By Sprout Invoices
Jun 17, 2026
Nov 17, 2021
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
The Client Invoicing by Sprout Invoices WordPress plugin before 19.9.7 does not sanitise and escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfil...Show more
The Client Invoicing by Sprout Invoices WordPress plugin before 19.9.7 does not sanitise and escape some of its settings, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowedShow less