There is a sensitive information disclosure vulnerability in document.php in Dolibarr ERP/CRM version 6.0.0 via the file parameter.
{ "affected_functions": [ "" ] }
{ "last_known_affected_version_range": "<= 6.0.0" }