CyberRota Analysis
AI-GeneratedPeproDev Ultimate Invoice versions up to 2.2.6 are susceptible to an unauthenticated Server Side Request Forgery (SSRF) vulnerability, allowing attackers to send crafted requests from the server to internal or external resources. This could lead to unauthorized access to sensitive data or services, potentially compromising the integrity of the affected systems. Organizations using this software should prioritize patching or mitigating this vulnerability to protect against potential exploitation.
CVE
CVE-2026-65516
Severity
HIGH
CVSS
7.2
EPSS
0.19%
Original NVD Description
Unauthenticated Server Side Request Forgery (SSRF) in PeproDev Ultimate Invoice <= 2.2.6 versions.