Dolibarr vendor intelligence

Dolibarr Known Exploited Vulnerabilities

Track evidence-backed exploitation affecting Dolibarr products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.

Browse KEVs Full KEV feed
Total KEVs
1
Known exploited vulnerability affecting Dolibarr products
In CISA KEV
0
Records also listed in the official catalog
Beyond CISA KEV
1
Additional exploited vulnerabilities absent from CISA KEV
Sensor Observed
1
Dolibarr KEV with sensor-observed exploitation activity

Review Dolibarr exploitation against the products you run

Review exploited Dolibarr vulnerabilities against the products you run. CISA KEV coverage is shown below.

0%
Covered by CISA
100%
Beyond CISA
1
Product families

Attested Dolibarr vulnerabilities

1 known exploited vulnerability in this exploited-vulnerability portfolio. Search, then narrow it to official CISA coverage or the additional records Previdian tracks beyond the catalog.

How exploitation is verified
CVE / description Product Confidence CISA KEV Added
CVE-2026-89013

Dolibarr 23.0.4 < 24.0.1 Authorization Bypass via hashp Parameter in document.php

Dolibarr Confirmed Beyond CISA 17 Sep 2026

Showing 1 of 1 on this page (1 Dolibarr known exploited vulnerability).

Recurring weakness patterns

Incorrect authorization account for one mapped occurrence across this Dolibarr KEV portfolio.

Browse all KEVs →