Security Advisory

CVE-2025-64012

4.3
MEDIUM

Vulnerability Description

InvoicePlane commit debb446c is vulnerable to Incorrect Access Control. The invoices/view handler fails to verify ownership before returning invoice data.
Published Date December 16, 2025
Official Source NIST NVD Advisory