Inyección SQL en ERPNext de Frappe
SQL Injection in Frappe's ERPNext Wed, 07/29/2026 - 12:41 Aviso Affected Resources ERPNext: versions prior to 15.111.0 and 16.22.0. Description INCIBE has coordinated the disclosure of a high-severity vulnerability affecting Frappe's ERPNext, an enterprise resource planning system. The vulnerability was discovered by Alejandro Ramos.This vulnerability has been assigned the following code, CVSS v4.0 base score, CVSS vector, and CWE vulnerability type:CVE-2026-12895: CVSS v4.0: 7.1| CVSS AV:N/AC…
EPSS 0.00 CVSS 7.1 CVE-2026-12895 Frappe výroba a průmysl ES