Evidence-linked product lifecycle intelligenceSUPPORT · SECURITY · RETIREMENT
← Search results
CVE-LINKED INVENTORY29 SECURITY RECORDS

dolibarr

dolibarr

Affected and fixed version statements observed in the public BlackTree CVE catalogue. These statements describe vulnerability scope, not publisher support entitlement.

Lifecycle evidence status

This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.

A missing support date does not mean the product is supported. CVE publication dates and affected-version ranges must not be interpreted as EOL dates.

CVE-observed version history

CVEPublishedAffected versionsFixed version informationPublisher evidence
CVE-2026-89013 11 Sep 2026 Dolibarr: 23.0.4 < 24.0.1 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-89012 11 Sep 2026 Dolibarr: 24.0.0 < 24.0.1 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-82633 30 Aug 2026 dolibarr: 10.0.0 < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-81730 27 Aug 2026 dolibarr: 9.0.0 < 24.0.0 dolibarr: 24.0.0 Update reference ↗
CVE-2026-81729 27 Aug 2026 dolibarr: < 23.0.4 dolibarr: 23.0.4 Update reference ↗
CVE-2026-81728 27 Aug 2026 dolibarr: < 24.0.0 dolibarr: 24.0.0 Update reference ↗
CVE-2026-77923 24 Aug 2026 dolibarr: 21.0.0 < 24.0.0 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-71511 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71510 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71509 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71508 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71507 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71506 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71505 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71504 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-71503 24 Aug 2026 dolibarr: < 24.0.0 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2026-58376 30 Jun 2026 ≤ 23.0.3 14db36e8486ef725b0d493d97abb2950a54358d3 Update reference ↗
CVE-2025-67486 8 May 2026 dolibarr: <= 22.0.2 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2026-23500 17 Apr 2026 < 23.0.0 23.0.0. Update reference ↗
CVE-2026-34036 31 Mar 2026 <= 22.0.4 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2020-36966 30 Jan 2026 ≤ 11.0.3 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2024-23817 25 Jan 2024 = 18.0.4 No fixed version is explicitly recorded in the structured CVE data. Use CVE record
CVE-2021-25956 17 Aug 2021 3.3.beta1_20121221 < * An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-25957 17 Aug 2021 unspecified ≤ 13.0.2 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-25955 15 Aug 2021 unspecified ≤ v13.0.2; v2.8.1 < unspecified An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2021-25954 9 Aug 2021 2.8.1 < unspecified; unspecified ≤ 13.0.4 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2013-2093 20 Nov 2019 3.3.4-1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2013-2092 20 Nov 2019 3.3.4-1 An authoritative update reference is available, but the fixed version is not recorded in the structured CVE fields. Check the linked vendor advisory for the applicable release. Update reference ↗
CVE-2013-2091 20 Nov 2019 3.3.1 No fixed version is explicitly recorded in the structured CVE data. Use CVE record

How this record is maintained

The CVE inventory is reconciled automatically from cve.blacktree.nl. Exact identity matches link to existing Lifecycle product or package histories. Unmatched products stay in a prioritised publisher-source research queue, and Lifecycle marks the date gap instead of inferring a support boundary from vulnerability data.