
CVE-2026-31879 Frappe is a full-stack web application framework. Prior to 14.100.2, 15.101.0, and 16.10.0, due to a lack of validation and improper permission checks, users could mo… https://www.cve.org/CVERecord?id=CVE-2026-31879
Post summary
This CVE involves a lack of validation and improper permission checks in Frappe, with patches available in versions 14.100.2, 15.101.0, and 16.10.0.
