Skip to content
Noroxi

Akaunting records

11 published records for vendor akaunting.

All records

11 records
  • An OS command injection vulnerability exists in Akaunting v3.1.3 and earlier.

    CriticalCVSS 9.8Proof of conceptEPSS 30%

    akaunting · akauntingFeb 8, 2024

  • Akaunting OS Command Injection in 'Money.php'

    CriticalCVSS 9.1No exploitEPSS 1%

    akaunting · akauntingAug 4, 2021

  • Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function.

    HighCVSS 8.8No exploitEPSS 2%

    akaunting · akauntingJun 21, 2021

  • Akaunting Authentication Bypass in Company Selection

    HighCVSS 8.1No exploitEPSS 1%

    akaunting · akauntingAug 4, 2021

  • Akaunting Password Reset Relay

    HighCVSS 8.1No exploitEPSS 1%

    akaunting · akauntingAug 4, 2021

  • Akaunting DoS via User-Controlled 'locale' Variable

    MediumCVSS 6.5No exploitEPSS 1%

    akaunting · akauntingAug 4, 2021

  • An issue in the component /settings/localisation of Akaunting v3.1.18 allows authenticated attackers to cause a Denial of Service (DoS) via

    MediumCVSS 6.5No exploitEPSS 0%

    akaunting · akauntingAug 21, 2025

  • Cross-site scripting (XSS) vulnerability in the component /common/reports of Akaunting v3.1.18 allows attackers to execute arbitrary web scr

    MediumCVSS 6.5No exploitEPSS 0%

    akaunting · akauntingAug 21, 2025

  • Akaunting Avatar Persistent XSS

    MediumCVSS 5.4No exploitEPSS 1%

    akaunting · akauntingAug 4, 2021

  • Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary we

    MediumCVSS 5.4No exploitEPSS 1%

    akaunting · akauntingOct 25, 2021

  • Akaunting Invoice Footer Persistent XSS

    MediumCVSS 4.8No exploitEPSS 1%

    akaunting · akauntingAug 4, 2021