Skip to content

dolibarr

Productivity & Wikis

Open‑source ERP & CRM software for managing contacts, quotes, invoices, inventory and more

PHP Latest 22.0.5 · 9d ago Security brief →

Features

  • Third‑parties management: customers, prospects, suppliers and contacts
  • Product/service catalogue with stock/warehouse tracking, barcodes, batches/lot/serials and variants
  • Manufacturing support including Bill of Materials (BOM) and Manufacturing Orders (MO)
  • Membership/foundation member management

Recent releases

View all 7 releases →
Upgrade now
22.0.5 Security relevant
RCE / SSRF Dependencies

SQL injection fix

Upgrade now
23.0.3 Security relevant
Auth RBAC RCE / SSRF

IDOR + SSRF + SQLi fixes

18.0.10 Bug fix
Security fixes
  • GHSA-crgg-h74r-2m8r — security fix (no further details provided)
  • GHSA-hq5j-39f9-qxcv — security fix (no further details provided)
Full changelog

What's Changed

  • fix(ticket): clear stale attachments when opening a new ticket form by @atm-corentin in https://github.com/Dolibarr/dolibarr/pull/37684
  • FIX: do not print Extrafields in PDF if printable is 0 by @FHenry in https://github.com/Dolibarr/dolibarr/pull/37623
  • apply develop pre-commit rules by @rycks in https://github.com/Dolibarr/dolibarr/pull/37799
  • FIX #GHSA-crgg-h74r-2m8r by @thomas-Ngr in https://github.com/Dolibarr/dolibarr/pull/37636
  • 18 report ghsa 39vm 9q4p 6jjg by @thomas-Ngr in https://github.com/Dolibarr/dolibarr/pull/37627
  • FIX #GHSA-hq5j-39f9-qxcv by @thomas-Ngr in https://github.com/Dolibarr/dolibarr/pull/37812
  • FIX : calculate the files count on ECM when add multiple files in one time by @kkhelifa-opendsi in https://github.com/Dolibarr/dolibarr/pull/31866
  • next step for PR #31866 / Issue #19493 by @rycks in https://github.com/Dolibarr/dolibarr/pull/37988
  • FIX autofill price with multicurrency on supplier doc (backport commit 391aca5) by @lvessiller-opendsi in https://github.com/Dolibarr/dolibarr/pull/38028
  • Prepare 18.0.10 by @rycks in https://github.com/Dolibarr/dolibarr/pull/38117

Full Changelog: https://github.com/Dolibarr/dolibarr/compare/18.0.9...18.0.10

23.0.2 Security relevant
Security fixes
  • GHSA-39vm-9q4p-6jjg: Force disable module on demo only
  • GHSA-7hqv-pvw6-cw54
  • GHSA-8qh8-6h88-q46p

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
7,278
Forks
3,394
Languages
PHP JavaScript CSS

Install & Platforms

Install via
docker shell-script
Platforms
linux macos windows

Beta — feedback welcome: [email protected]