cleantalk
Vulnerabilities and Security Researches

Client Invoicing by Sprout Invoices – Easy Estimates and Invoices for WordPress, CVE-2025-64229

CVE, Research URL

CVE-2025-64229

Published on
Oct 29, 2025
Research Description
Missing Authorization vulnerability in BoldGrid Client Invoicing by Sprout Invoices sprout-invoices allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Client Invoicing by Sprout Invoices: from n/a through <= 20.8.7.
Affected versions
max 20.8.7.
Status
vulnerable