frappe Latest Vulnerabilities
Latest vulnerabilities published by frappe
Vulnerability Published:
ποΈ Published
- Anytime
Sort By:
ποΈ Published Date
- Descending
Path Traversal Vulnerability in Frappe Learning Management System
CVE-2026-54343FrappeLms8.7HIGHSQL Injection Vulnerability in Frappe HR Prior to Version 16.7.0
CVE-2026-54524FrappeHrms7.1HIGHCross-Site Scripting Vulnerability in Frappe Framework
CVE-2023-51769FrappeFrappe6.1MEDIUMAuthentication Bypass Vulnerability in Frappe CRM by Frappe
CVE-2026-53761FrappeCrm8.2HIGHAuthorization Flaw in Frappe Framework Allows Arbitrary Template Rendering
CVE-2026-82634FrappeFrappe7.1HIGHStored XSS Vulnerability in Frappe Workspace Link Description
CVE-2026-81731FrappeFrappe5.1MEDIUMAccess Control Bypass in Frappe Framework Affects User Data Security
CVE-2026-66003FrappeFrappe7.1HIGHUser Enumeration Vulnerability in Frappe Web Application Framework
CVE-2026-66002FrappeFrappe6.9MEDIUMOAuth2 Vulnerability in Frappe Framework Affects User Data Security
CVE-2026-66001FrappeFrappe8.5HIGHType Confusion Vulnerability in Frappe Framework by Frappe Technologies
CVE-2026-62315FrappeFrappe7.1HIGHWorkflow Approval Endpoint Vulnerability in Frappe
CVE-2026-63654FrappeFrappe6.9MEDIUMVulnerability in Frappe Framework Allows Unauthorized Metadata Modification
CVE-2026-53569FrappeFrappe5.3MEDIUMSQL Injection Vulnerability in ERPNext Affects Sales Reports
CVE-2026-65822FrappeErpnext7.6HIGHServer-side Template Injection Vulnerability in ERPNext by Frappe
CVE-2026-65974FrappeErpnext9.9CRITICALArbitrary Code Execution Risk in ERPNext by Frappe
CVE-2026-72911FrappeErpnext9.9CRITICALPermission Management Flaw in ERPNext Affects Data Security
CVE-2026-72910FrappeErpnext7.1HIGHCross-Company Data Exposure in ERPNext due to Insufficient Permissions
CVE-2026-72909FrappeErpnext7.1HIGHSQL Injection Vulnerability in ERPNext Enterprise Resource Planning Tool
CVE-2026-72908FrappeErpnext6.5MEDIUMAuthorization Bypass in ERPNext Affects Accounting Data Integrity
CVE-2026-72907FrappeErpnext6.5MEDIUMPermission Check Bypass in ERPNext Affects Automated Email Functionality
CVE-2026-72906FrappeErpnext4.3MEDIUMEmail Notification Flaw in Frappe Framework
CVE-2026-66000FrappeFrappe2.3LOWSQL Injection Vulnerability in Frappe Framework Versions 14.96.9 and Below
CVE-2025-58375FrappeFrappe8.1HIGHUnrestricted Access Vulnerability in Frappe Framework
CVE-2026-66058FrappeFrappe5.3MEDIUMField-Level Permissions Bypass in Frappe Web Application Framework
CVE-2026-66059FrappeFrappe5.3MEDIUMCross-Site Scripting in Frappe Framework Affects Data Import Functionality
CVE-2026-49391FrappeFrappe5.1MEDIUM