Tag

#PHP

5 published stories tagged with PHP.

highApplication SecurityMay 8, 2026·4 min read

Brief: Kimai Invoice Template Vulnerability Can Expose Files Readable by PHP Worker

Kimai versions 2.32.0 to before 2.56.0 allow users with System-Admin role and upload_invoice_template permission to embed files readable by the PHP worker into rendered invoice PDFs.

highApplication SecurityMay 8, 2026·4 min read

Defender Guidance: Kimai Invoice Template Vulnerability Can Expose Files Readable by PHP Worker

Kimai versions 2.32.0 to before 2.56.0 allow users with System-Admin role and upload_invoice_template permission to embed files readable by the PHP worker into rendered invoice PDFs.

highApplication SecurityMay 8, 2026·4 min read

Detection Notes: Kimai Invoice Template Vulnerability Can Expose Files Readable by PHP Worker

Kimai versions 2.32.0 to before 2.56.0 allow users with System-Admin role and upload_invoice_template permission to embed files readable by the PHP worker into rendered invoice PDFs.

highApplication SecurityMay 8, 2026·4 min read

Risk Brief: Kimai Invoice Template Vulnerability Can Expose Files Readable by PHP Worker

Kimai versions 2.32.0 to before 2.56.0 allow users with System-Admin role and upload_invoice_template permission to embed files readable by the PHP worker into rendered invoice PDFs.

highApplication SecurityMay 8, 2026·4 min read

Kimai Invoice Template Vulnerability Can Expose Files Readable by PHP Worker

Kimai versions 2.32.0 to before 2.56.0 allow users with System-Admin role and upload_invoice_template permission to embed files readable by the PHP worker into rendered invoice PDFs.