Frappe

Latest version: v0.0.1

Vulnerabilities (10)

CVE/PVE Vulnerability ID Advisory Affected versions Severity Severity Score
CVE-2023-41328 70411

Frappe is a low code web framework written in Python and Javascript. …

  • >13.0.0,<13.46.1
  • >14.0.0,<14.20.0
HIGH 7.5
CVE-2019-20529 65814

In core/doctype/prepared_report/prepared_report.py in Frappe 11 and 1…

  • >=11.0.0,<11.1.64
  • >=12.0.0,<12.1.0
HIGH 7.5
CVE-2017-1000120 66885

A SQL injection vulnerability exists in specified versions of Frappe,…

  • <7.1.28
HIGH 8.8
CVE-2024-24812 65296

Frappe is a full-stack web application framework that uses Python and…

  • <14.59.0
MEDIUM 5.4
CVE-2023-46127 61995

Frappe 14.49.0 includes a fix for CVE-2023-46127: A malicious Frappe …

  • <14.49.0
MEDIUM 5.4
CVE-2022-3988 62852

This is a placeholder package for the original Frappe Framework where…

  • <=14.14.3
MEDIUM 6.1
CVE-2020-27508 70577

In two-factor authentication, the system also sending 2fa secret key …

  • <12.10.0
HIGH 7.5
CVE-2019-14966 70502

An issue was discovered in Frappe Framework 10 through 12 before 12.0…

  • <12.0.4
HIGH 8.8
CVE-2019-14965 70501

An issue was discovered in Frappe Framework 10 through 12 before 12.0…

  • <12.0.4
CRITICAL 9.8
CVE-2019-14967 70503

An issue was discovered in Frappe Framework 10, 11 before 11.1.46, an…

  • <11.1.46
MEDIUM 6.1