CVE-2026-50709
Vulnerability Description
A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the Notifications > Events panel.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-79
Source
NVD
Vendor
Frappe
Product
Frappe Framework
Discussion (0)
Add Comment
No comments yet. Be the first!