CVE-2025-56379 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A stored cross-site scripting (XSS) vulnerability in the blog post feature of ERPNEXT v15.67.0 allows attackers to execute arbitrary web scripts or HTML via a c…
Medium CVSS: 5.4

CVE-2025-56379

A stored cross-site scripting (XSS) vulnerability in the blog post feature of ERPNEXT v15.67.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the content field.
Vendor
Frappe
Product
Erpnext
CWE
CWE-79
Yayın Tarihi
2025-10-02 14:15:45
Güncelleme
2025-10-03 19:15:49
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar