#InvenTree
just blogged: the #inventree ecosystem - a first peak at a large and onging data collection effort to better understand the current InvenTree ecosystem. The goal is to have better data on how we can evolve the plugin interface and what foes wrong when building plugins […]
Original post on mastodon.social
mastodon.social
October 2, 2026 at 9:48 PM
February 22, 2026 at 3:05 AM
[Projects] inventree/InvenTree Open Source Inventory Management System. #djangonews github.com/inventree/I...
December 27, 2024 at 12:00 AM
📦 inventree / InvenTree
⭐ 5,429 (+39)
🗒 Python

Open Source Inventory Management System
GitHub - inventree/InvenTree: Open Source Inventory Management System
Open Source Inventory Management System. Contribute to inventree/InvenTree development by creating an account on GitHub.
github.com
August 30, 2025 at 3:02 PM
🚨 EUVD-2026-84053
📊 6.5/10
🏢 inventree

📝 InvenTree is an Open Source Inventory Management System. Prior to 1.4.0, privileged staff users who can author report or label templates can cause Weasy...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-84053

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 12:03 AM
CVE-2026-35478 - InvenTree has Arbitrary API Token Creation
CVE ID : CVE-2026-35478

Published : April 8, 2026, 8:16 p.m. | 2 hours, 22 minutes ago

Description : InvenTree is an Open Source Inventory Management System. From 0.16.0 to before 1.2.7, any authenticated InvenT...
CVE-2026-35478 - InvenTree has Arbitrary API Token Creation
InvenTree is an Open Source Inventory Management System. From 0.16.0 to before 1.2.7, any authenticated InvenTree user can create a valid API token attributed to any other user in the system — including administrators and superusers — by supplying the target's user ID in the user field of a POST …
cvefeed.io
April 8, 2026 at 10:59 PM
📌 CVE-2026-35478 - InvenTree is an Open Source Inventory Management System. From 0.16.0 to before 1.2.7, any authenticated InvenTree user can create a valid API token at... https://www.cyberhub.blog/cves/CVE-2026-35478
CVE-2026-35478
InvenTree is an Open Source Inventory Management System. From 0.16.0 to before 1.2.7, any authenticated InvenTree user can create a valid API token attributed to any other user in the system — including administrators and superusers — by supplying the target's user ID in the user field of a POST /ap
www.cyberhub.blog
April 20, 2026 at 4:37 PM
Swapped Zoho Inventory for Inventree. One lives on my server; the other lives in my subscription folder.

Inventree is a MIT, Python inventory management. Inventory management system which provides intuitive parts management and st...

#opensource #selfhosted #inventorymanagement
September 1, 2026 at 4:35 AM
I have developed something new for the #inventree ecosystem: a project management plugin that enables you to:
- define required parameters based on type/stage
- do light task tracking (with ideas how this could be coupled to GitHub issues/jira/openproject)
- parse and emit project data formats […]
Original post on mastodon.social
mastodon.social
May 8, 2026 at 11:52 AM
the book in inventree: its house of leaves. trust.

these memories in the menu…. This better not be a timeloop game and I better not forget myself or my friends.

I have been informed this is, in fact, a timeloop game (it was in the store page omg)
Oh no
December 16, 2024 at 6:46 PM
📌 CVE-2026-33530 - InvenTree is an Open Source Inventory Management System. Prior to version 1.2.6, certain API endpoints associated with bulk data operations can be hij... https://www.cyberhub.blog/cves/CVE-2026-33530
CVE-2026-33530
InvenTree is an Open Source Inventory Management System. Prior to version 1.2.6, certain API endpoints associated with bulk data operations can be hijacked to exfiltrate sensitive information from the database. The bulk operation API endpoints (e.g. `/api/part/`, `/api/stock/`, `/api/order/so/alloca
www.cyberhub.blog
April 3, 2026 at 2:20 PM
🟠 CVE-2026-35478 - High (8.3)

InvenTree is an Open Source Inventory Management System. From 0.16.0 to before 1.2.7, any authent...

https://www.thehackerwire.com/vulnerability/CVE-2026-35478/

#infosec #cybersecurity #CVE #vulnerability #security #patchstack
April 9, 2026 at 7:05 AM
I have now spent 6 to 8 hours of my precious free time failing to get InvenTree to run. It's been about 3 hours of it not responding to HTTP requests at all, 1 hour of it redirecting to https://localhost due to a proxy misconfiguration, and another three hours of it redirecting to itself in a […]
Original post on pony.social
pony.social
October 1, 2025 at 6:48 AM
🚨 EUVD-2026-84056
📊 6.5/10
🏢 inventree

📝 InvenTree is an Open Source Inventory Management System. Prior to 1.4.0, POST /api/barcode/ accepts an attacker-synthesized internal JSON barcode contai...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-84056

#cybersecurity #infosec #cve #euvd
September 29, 2026 at 4:01 PM
I still don’t really have a handle on how to deal with AI users flooding us with work that might be technical correct but probably unethical and difficult in regards to community impact.
Things like https://github.com/inventree/InvenTree/issues/12873 make me angry but at the same time there […]
Original post on mastodon.social
mastodon.social
September 28, 2026 at 8:11 PM
RE: https://chaos.social/@InvenTree/117350430791706330

I know parts of the community are (very) critical of LLMs and so am I.

Nevertheless the various vibe “coded” community alternatives ranged from deranged and inefficient to outright dangerous. Some even allowing direct write access and SQL […]
Original post on mastodon.social
mastodon.social
September 28, 2026 at 8:04 PM
🚨 EUVD-2026-84058
📊 4.3/10
🏢 inventree

📝 InvenTree is an Open Source Inventory Management System. Prior to 1.4.0, ReportPrint at POST /api/report/print/ and LabelPrint at POST /api/report/label...

🔗 https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-84058

#cybersecurity #infosec #cve #euvd
September 25, 2026 at 12:03 AM
New #Drupal module: Drupal Stock InvenTree (2026-09-01) #PHP. See https://www.drupal.org/project/commerce_stock_inventree
September 1, 2026 at 5:00 PM
📢 New #updates · 11 Aug #10

· vLLM v0.27.1 — Added support for quantized DSpark Markov heads
· Inventree 1.5.0 — Python version bumped, table and API refactored
August 11, 2026 at 11:43 AM
🚀 GitHub Intelligence Drop

InvenTree (Python • 🟢)
⭐ 7.4K → https://github.com/inventree/InvenTree

visdom (Python • 🟢)
⭐ 10.3K → https://github.com/fossasia/visdom

⚡ Only signal. Zero noise.
August 10, 2026 at 7:15 AM
I dropped two MCP integrations last month.

First one was hanging my InvenTree. Second was burning CPU on my old EliteDesk — fan loud enough to hear through closed doors.

The abstraction wasn't free. Limited hardware just made the price visible.

Read: https://read.elilap.dev/the-mcp-noise-tax/
August 9, 2026 at 2:24 PM