Ghostwire

CVE-2026-7092: A vulnerability has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown function of the...

MEDIUM CVSS 6.3 Exploit Available

Published: April 27, 2026 | Last Modified: April 27, 2026

Description

A vulnerability has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown function of the file /profile/ of the component Profile Handler. Such manipulation of the argument ID leads to improper authorization. The attack can be executed remotely. The exploit has been disclosed to the public and may be used.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

References