Known Vulnerabilities for Aureus ERP by Webkul
Listed below are 3 of the newest known vulnerabilities associated with "Aureus ERP" by "Webkul".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-95655 json | Aureus ERP before 1.5.0 fails to scope message lookups to the current record in ChatterPanel, allowing authenticated users to... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-94387 json | Aureus ERP before 1.6.0 contains a stored cross-site scripting vulnerability in the Chatter field-change log where old_value ... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2026-93454 json | Aureus ERP through 1.6.0 stores the Payment Term note field unsanitized and renders it as raw HTML in the Accounting plugin. ... | Not Provided | 2026-09-18 | 2026-09-22 |