
CVE-2026-31017 A Server-Side Request Forgery (SSRF) vulnerability exists in the Print Format functionality of ERPNext v16.0.1 and Frappe Framework v16.1.1, where user-supplied HTML … https://www.cve.org/CVERecord?id=CVE-2026-31017
Post summary
The post announces a Server‑Side Request Forgery vulnerability in ERPNext and Frappe, detailing the affected versions but lacking PoC, exploit code, or patch information.


