CVE-2026-23497
Frappe Learning Management System (LMS) is a learning system that helps users structure their content. In 2.44.0 and earlier, there is a stored XSS vulnerability where a specially crafted image filename could execute malicious JavaScript when rendered on course or jobs pages.
Vendor
Product
CWE
Yayın Tarihi
2026-01-14 19:16:48
Güncelleme
2026-01-16 18:44:56
Source Identifier
security-advisories@github.com
KEV Date Added
-