Vulnerabilities
Vulnerable Software
Frappe:  >> Frappe  >> 15.52.0  Security Vulnerabilities
Frappe is a full-stack web application framework. Prior to versions 14.94.3 and 15.58.0, SQL injection could be achieved via a specially crafted request, which could allow malicious person to gain access to sensitive information. This issue has been patched in versions 14.94.3 and 15.58.0. There are no workarounds for this issue other than upgrading.
CVSS Score
8.7
EPSS Score
0.004
Published
2025-06-30
Frappe is a full-stack web application framework. Prior to versions 14.93.2 and 15.55.0, a SQL Injection vulnerability has been identified in Frappe Framework which could allow a malicious actor to access sensitive information. Versions 14.93.2 and 15.55.0 contain a patch for the issue. No known workarounds are available.
CVSS Score
6.6
EPSS Score
0.004
Published
2025-03-26


Contact Us

Shodan ® - All rights reserved