← Back to CVE List

CVE-2023-41328

Published: 2023-09-06T18:15Z
Last Modified: 2024-11-21T08:21Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Frappe is a low code web framework written in Python and Javascript. A SQL Injection vulnerability has been identified in the Frappe Framework which could allow a malicious actor to access sensitive information. This issue has been addressed in versions 13.46.1 and 14.20.0. Users are advised to upgrade. There's no workaround to fix this without upgrading. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt