PT-2026-29342 · Unknown+1 · Invoiceshelf+1

Lagongit

·

Published

2026-03-31

·

Updated

2026-04-01

·

CVE-2026-34366

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions InvoiceShelf versions prior to 2.2.0
Description InvoiceShelf is a web and mobile application used for expense tracking, payments, and invoice/estimate creation. A Server-Side Request Forgery (SSRF) exists in the Payment receipt PDF generation module in versions prior to 2.2.0. User-supplied HTML within the payment Notes field is passed without sanitization to the Dompdf rendering library, allowing it to fetch remote resources referenced in the markup. The vulnerability is exploitable through the PDF receipt endpoint, regardless of email attachment settings.
Recommendations Update to version 2.2.0 or later.

Exploit

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2026-34366
GHSA-38HF-FQ8X-Q49R

Affected Products

Dompdf
Invoiceshelf