CVE-2025-56380 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Frappe Framework v15.72.4 was discovered to contain a SQL injection vulnerability via the fieldname parameter in the frappe.client.get_value API endpoint and a…
Medium CVSS: 6.5

CVE-2025-56380

Frappe Framework v15.72.4 was discovered to contain a SQL injection vulnerability via the fieldname parameter in the frappe.client.get_value API endpoint and a crafted script to the fieldname parameter
Vendor
Frappe
Product
Erpnext
CWE
CWE-89
Yayın Tarihi
2025-10-02 14:15:45
Güncelleme
2025-10-03 16:18:50
Source Identifier
cve@mitre.org
KEV Date Added
-

Kategoriler

Referanslar