Frappe Technologies

Security Scorecard

Score

87B

Total CVEs

18

Patch Rate

83%

15 patched

Avg Response

24d

days to patch

Critical Gaps

0

exploitable, no detection

Severity Breakdown

Critical0
High3
Medium14
Low0

Patch Status

Patched15 (83%)
Partial/Workaround0 (0%)
Unpatched3 (17%)

CVEs (18)

CVE IDTitleSeverityScoreDaysPatch
CVE-2026-23497Frappe Learning Management System Stored XSSMedium5.4-Patched
CVE-2025-68953Frappe Path Traversal VulnerabilityHigh7.5-Patched
CVE-2025-68928Frappe CRM Cross-Site ScriptingMedium5.4-Patched
CVE-2025-66434Frappe ERPNext SSTI VulnerabilityHigh8.8-Patched
CVE-2025-66435Frappe ERPNext SSTI VulnerabilityMedium4.3-Patched
CVE-2025-66436CVE-2025-66436Medium4.3-Patched
CVE-2025-66440FrappiSQLHigh8.8-Patched
CVE-2025-67730Frappe Learning Management System Job Form XSSMedium5.4-Patched
CVE-2025-66581Frappe LMS Auth BypassMedium6.5-Patched
CVE-2025-66206-Medium6.814dPatched