A vulnerability classified as critical has been found in Invoice Ninja 5.12.46/5.12.48 . This affects an unknown function of the file CheckDatabaseRequest.php . This manipulation causes server-side request forgery. This vulnerability is handled as CVE-2026-29925 . The attack can be initiated remotely. There is not any exploit available.