A vulnerability was found in Dolibarr ERP up to 23.0.3 and classified as critical. Affected is the function
fail of the file htdocs/takepos/invoice.php of the component TakePOS Module. Such manipulation leads to missing authorization.
This vulnerability is listed as CVE-2026-19350. The attack may be performed from remote. There is no available exploit.
It is advisable to implement a patch to correct this issue.