CVE-2026-31877 | Frappe up to 14.98.x/15.83.x Request sql injection
A vulnerability was found in Frappe up to 14.98.x/15.83.x. It has been rated as critical. The impacted element is an unknown function of the component Request Handler. Performing a manipulation results in sql injection.
This vulnerability is identified as CVE-2026-31877. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.