Vulnerabilities
Report: CVE-2026-2343 - PeproDev Ultimate Invoice <= 2.2.5 - unauthenticated invoice archive download
CVE ID :CVE-2026-2343 Published : March 25, 2026, 6 a.m. | 26 minutes ago Description :The PeproDev Ultimate Invoice WordPress plugin through 2.2.5 has a bulk download invoices action that generates ZIP archives containing exported invoice PDFs. The ZIP files are named predictably making it possible to brute force and retreive PII. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...