cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches foreasy-invoice easy-invoice

Direction: ascending
Dec 11, 2025

Easy Invoice – Invoice for WordPress, PDF Invoice, Quote for WordPress, WordPress Invoice Plugin # CVE-2025-66115

CVE, Research URL

CVE-2025-66115

Date
Nov 21, 2025
Research Description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in MatrixAddons Easy Invoice easy-invoice allows PHP Local File Inclusion.This issue affects Easy Invoice: from n/a through <= 2.1.4.
Affected versions
max 2.1.4.
Status
vulnerable
Apr 25, 2026

Easy Invoice &#8211; Invoice for WordPress, PDF Invoice, Quote for WordPress, WordPress Invoice Plugin # CVE-2025-6324

CVE, Research URL

CVE-2025-6324

Date
Dec 18, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MatrixAddons Easy Invoice easy-invoice allows DOM-Based XSS.This issue affects Easy Invoice: from n/a through <= 2.0.9.
Affected versions
max 2.1.0.
Status
vulnerable