Frappe LMS is an open source learning management system. In versions 1.0.0 and prior, on the People Page of LMS, there was an SQL Injection vulnerability. The issue has been fixed in the `main` branch. Users won't face this issue if they are using the latest main branch of the app.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2023-09-21T16:37:49.041Z
Updated: 2024-08-02T19:30:24.171Z
Reserved: 2023-09-14T16:13:33.307Z
Link: CVE-2023-42807
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-09-21T17:15:23.950
Modified: 2023-09-25T16:34:41.657
Link: CVE-2023-42807
Redhat
No data.