CVE-2026-71233: Invoiceninja
High severity, CVSS 8.7. EPSS: 0.4% chance of exploitation in the next 30 days.
InvoiceNinja v5-stable renders an invoice or quote's "terms" field in the client portal using Laravel Blade's raw output directive {!! ->terms !!} (resources/views/portal/ninja2020/invoices/includes/terms.blade.php) with no HTML sanitization.
Affected products
- Invoiceninja Invoiceninja: version 5.0.0 only
Published 2026-08-05. Last modified 2026-08-26.