Vulnerabilities
Vulnerable Software
Frappe:  >> Erpnext  >> 13.13.0  Security Vulnerabilities
ERP is a free and open source Enterprise Resource Planning tool. In versions below 14.89.2 and 15.0.0 through 15.75.1, lack of validation of parameters left certain endpoints vulnerable to error-based SQL Injection. Some information like version could be retrieved. This issue is fixed in versions 14.89.2 and 15.76.0.
CVSS Score
8.1
EPSS Score
0.0
Published
2025-09-06
In ERPNext, versions v13.0.0-beta.13 through v13.30.0 are vulnerable to Stored XSS at the Patient History page which allows a low privilege user to conduct an account takeover attack.
CVSS Score
3.5
EPSS Score
0.002
Published
2022-06-22


Contact Us

Shodan ® - All rights reserved