Frappe 是一个全栈 Web 应用框架。在版本 16.31.0 及更早版本中, 中的 端点和 中的 端点虽然属于白名单允许访问,但在修改 元数据或笔记的“已读”状态之前,并未强制实施读取权限校验。因此,经过身份验证的用户可以与他们无权读取的文档或笔记进行交互,从而泄露资源的存在性信息,并修改与资源相关的元数据。截至本次审查时,尚未发布任何修复该漏洞的版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-66001 | 8.5 HIGH | Frappe: Improper Authorization in OAuth2 Consent Endpoint |
| CVE-2026-62315 | 7.1 HIGH | Frappe: Mass assignment via set_value |
| CVE-2026-66002 | 6.9 MEDIUM | Frappe: User Enumeration via PDDR |
| CVE-2026-63654 | 6.9 MEDIUM | Frappe: Unauthenticated Workflow approval via confirm_action |
No comments yet