🚨 CVE-2026-71626
An issue in Invoice Ninja v5.13.24 allows a remote attacker to obtain sensitive information via the StoreWebhookRequest.php, UpdateWebhookRequest.php, and WebhookSingle.php components
🎖@cveNotify

colorful-quill-4fe on Notion
CVE-2026-71626/API Webhook SSRF via Internal and Loopback Targets | Notion
CVE-ID:CVE-2026-71626
September 4, 2026 9