CVE-2025-27980 | cashbook 4.0.3 show Invoice path traversal
A vulnerability classified as problematic was found in cashbook 4.0.3. Affected by this vulnerability is an unknown functionality of the file /api/entry/flow/invoice/show. The manipulation of the argument Invoice leads to path traversal.
This vulnerability is known as CVE-2025-27980. The attack can be launched remotely. Furthermore, there is an exploit available.