Frappe LMS is an open source learning management system. In versions 1.0.0 and prior, on the People Page of LMS, there was an SQL Injection vulnerability. The issue has been fixed in the `main` branch. Users won't face this issue if they are using the latest main branch of the app.
Metrics
Affected Vendors & Products
References
History
Tue, 24 Sep 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2023-09-21T16:37:49.041Z
Updated: 2024-09-24T14:50:49.075Z
Reserved: 2023-09-14T16:13:33.307Z
Link: CVE-2023-42807
Vulnrichment
Updated: 2024-08-02T19:30:24.171Z
NVD
Status : Modified
Published: 2023-09-21T17:15:23.950
Modified: 2024-11-21T08:23:11.920
Link: CVE-2023-42807
Redhat
No data.