
CVE-2023-54345 Frappe Framework ERPNext 13.4.0 contains a sandbox escape vulnerability in RestrictedPython that allows authenticated users with System Manager role to execute arbitr… https://www.cve.org/CVERecord?id=CVE-2023-54345
Post summary
The tweet discloses CVE‑2023‑54345, a sandbox escape in ERPNext’s RestrictedPython module that lets System Manager users execute arbitrary code.


