CVE-2026-50700 | Frappe Framework 17.0.0-dev frappe.get_avatar cross site scripting

SecurityVulns

A vulnerability marked as problematic has been reported in Frappe Framework 17.0.0-dev. Impacted is the function frappe.get_avatar. This manipulation causes cross site scripting.

The identification of this vulnerability is CVE-2026-50700. It is possible to initiate the attack remotely. There is no exploit available.VulDB Recent EntriesRead More