Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Akaunting

11 known vulnerabilities

1
CRITICAL
3
HIGH
7
MEDIUM

Top Products

akaunting 11
11 CVEs
6.5
CVE-2025-55522

Cross-site scripting (XSS) vulnerability in the component /common/reports of Akaunting v3.1.18 allows attackers to execu

6.5
CVE-2025-55521

An issue in the component /settings/localisation of Akaunting v3.1.18 allows authenticated attackers to cause a Denial o

9.8
CVE-2024-22836

An OS command injection vulnerability exists in Akaunting v3.1.3 and earlier. An attacker can manipulate the company loc

5.4
CVE-2020-20908

Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to

5.2
CVE-2021-36805

Akaunting version 2.1.12 and earlier suffers from a persistent (type II) cross-site scripting (XSS) vulnerability in the

5.4
CVE-2021-36804

Akaunting version 2.1.12 and earlier suffers from a password reset spoofing vulnerability, wherein an attacker can proxy

6.3
CVE-2021-36803

Akaunting version 2.1.12 and earlier suffers from a persistent (type II) cross-site scripting (XSS) vulnerability in pro

6.5
CVE-2021-36802

Akaunting version 2.1.12 and earlier suffers from a denial-of-service issue that is triggered by setting a malformed 'lo

8.1
CVE-2021-36801

Akaunting version 2.1.12 and earlier suffers from an authentication bypass issue in the user-controllable field, compani

8.7
CVE-2021-36800

Akaunting version 2.1.12 and earlier suffers from a code injection issue in the Money.php component of the application.

8.8
CVE-2020-22390

Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrar

Frequently Asked Questions

How many CVEs affect Akaunting?

Akaunting has 11 CVE records in our database, including 1 critical and 3 high severity vulnerabilities.

What are the most severe Akaunting vulnerabilities?

Akaunting has 1 critical severity (CVSS 9.0+) and 3 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.

How can I scan for Akaunting vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Akaunting products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Akaunting Vulnerabilities

CyberStrike scans your infrastructure for Akaunting vulnerabilities and provides real-time remediation guidance.

Get Started