Security Advisory

CVE-2026-44206

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-12 14:34:00
Last updated 2026-06-12 15:58:30
Assigner GitHub_M
CVSS score 6.9
State PUBLISHED

Description

Frappe is a full-stack web application framework. Prior to versions 15.107.2 and 16.17.4, DB Schema Enumeration is possible through exploiting an endpoint. This issue has been patched in versions 15.107.2 and 16.17.4.