Known vulnerabilities in Frappe ERPNext

Vendor: Frappe
Website: https://frappe.io/
Total Security Bulletins: 5

Security bulletins (5)

Secuity bulletin Severity Status Published
SB2026022318: Improper access control in ERPNext Medium
Patched
23.02.2026
SB2020080512: SQL injection in ERPNext Medium
Patched
05.08.2020
SB2020031832: Multiple vulnerabilities in Frappe ERPNext Medium
Patched
18.03.2020
SB2018121129: SQL injection in Frappe ERPNext Medium
Patched
11.12.2018
SB2018091213: Multiple vulnerabilities in Frappe ERPNext High
Patched
12.09.2018