CVE-2026-71233: Invoiceninja

High severity, CVSS 8.7. EPSS: 0.4% chance of exploitation in the next 30 days.

InvoiceNinja v5-stable renders an invoice or quote's "terms" field in the client portal using Laravel Blade's raw output directive {!! ->terms !!} (resources/views/portal/ninja2020/invoices/includes/terms.blade.php) with no HTML sanitization.

Affected products

Published 2026-08-05. Last modified 2026-08-26.