Vulnerabilities (CVE)

Filtered by vendor Frappe Subscribe
Filtered by product Frappe
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-14966 1 Frappe 1 Frappe 2024-11-21 6.5 MEDIUM 8.8 HIGH
An issue was discovered in Frappe Framework 10 through 12 before 12.0.4. There exists an authenticated SQL injection.
CVE-2019-14965 1 Frappe 1 Frappe 2024-11-21 7.5 HIGH 9.8 CRITICAL
An issue was discovered in Frappe Framework 10 through 12 before 12.0.4. A server side template injection (SSTI) issue exists.