Medium 5.3
2026-04-08< 20.8.11
CVE-2026-39562
Minimum safe version
20.8.11
Update to 20.8.11 or later to address 13 fixable vulnerabilities
CVE-2026-39562
CVE-2026-32401
CVE-2026-25364
CVE-2025-64227
CVE-2025-64229
CVE-2025-24606
CVE-2024-53819
Sprout Invoices < 20.5.4 - Sensitive Information Exposure
WordPress Client Invoicing by Sprout Invoices Plugin <= 20.5.3 is vulnerable to Sensitive Data Exposure
Sprout Invoices <= 20.5.3 - Sensitive Information Exposure
WordPress Client Invoicing by Sprout Invoices Plugin <= 19.0 is vulnerable to Cross Site Scripting (XSS)
Client Invoicing by Sprout Invoices – Easy Estimates and Invoices for WordPress <= 9.3 - Missing Authorization
CVE-2021-24787