bigprof-software / online-invoicing-system

Easy and lean invoicing for small businesses, consultants and freelancers, created using AppGini
https://bigprof.com/appgini/applications/online-invoicing-system
MIT License
51 stars 48 forks source link

Potential security vulnerability #12

Open ranjit-git opened 3 years ago

ranjit-git commented 3 years ago

Few potential security vulnerability has been disclosed to huntr . Plz validate report submitted against your repo by going huntr https://huntr.dev/

ranjit-git commented 2 years ago

Hello @bigprof Bellow vulnerabilty still not validated . Asit has been 5 months since reported .I see your fix taking long time . You can validate them now and confirm the fix later when patch is ready .

https://huntr.dev/bounties/c6afc2db-78f0-4df6-b5e2-d4d6650624ca/ https://huntr.dev/bounties/10816301-8fe2-4a9a-89f6-302f757256df/ https://huntr.dev/bounties/f09562d1-7539-4f43-8eff-d69a1c0fc670/ https://huntr.dev/bounties/95971e7c-7f82-4589-ba3e-30061147f0f8/ https://huntr.dev/bounties/cba7cb06-769c-4b6a-8297-4330570fb957/ https://huntr.dev/bounties/1b48f268-79be-49d0-b5f7-a030e5ceaf2c/

ranjit-git commented 2 years ago

i see bug is still pending . its not good idea to keep the security bug open for long time since it may affects your customer