Frappe Learning Management System (LMS) is a learning system that helps users structure their content. From version 2.27.0 to before version 2.48.0, Frappe LMS was vulnerable to stored XSS. This issue has been patched in version 2.48.0.
Metrics
Affected Vendors & Products
References
History
Fri, 03 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 03 Apr 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Frappe
Frappe lms |
|
| Vendors & Products |
Frappe
Frappe lms |
Thu, 02 Apr 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Frappe Learning Management System (LMS) is a learning system that helps users structure their content. From version 2.27.0 to before version 2.48.0, Frappe LMS was vulnerable to stored XSS. This issue has been patched in version 2.48.0. | |
| Title | Stored XSS in Frappe LMS | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-04-03T13:02:34.097Z
Reserved: 2026-03-30T17:15:52.500Z
Link: CVE-2026-34606
Updated: 2026-04-03T13:02:29.999Z
Status : Awaiting Analysis
Published: 2026-04-02T18:16:32.170
Modified: 2026-04-03T16:10:23.730
Link: CVE-2026-34606
No data.
OpenCVE Enrichment
Updated: 2026-04-03T09:17:11Z