PatchSiren

ICZ Corporation CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM ICZ Corporation CVE published 2026-04-08

CVE-2026-33273

The CVE record for CVE-2026-33273 was published on 2026-04-08T06:16:28.647Z and has not been modified since then. The NVD entry is currently Analyzed. This unrestricted file upload vulnerability in MATCHA INVOICE 2.6.6 and earlier allows administrators to create arbitrary files, potentially leading to code execution on the server. The vulnerability has a CVSS score of 5.1, indicating medium severity. Admi [truncated]