Executive brief
Frappe has possibility of SQL injection due to improper validations
Affected products
- PyPI frappe
Junglewise Threat Intelligence
CVE-2025-30217 · Severity: medium · CVSS 4 · Published 2026-07-07
Technologies: frappe (PyPI). Vendors: PyPI.
Frappe has possibility of SQL injection due to improper validations