CVE-2026-58503 | Frappe up to 15.105.x/16.15.x Reset Password Endpoint reset_password User information disclosure

SecurityVulns

A vulnerability marked as problematic has been reported in Frappe up to 15.105.x/16.15.x. This impacts the function reset_password of the component Reset Password Endpoint. Performing a manipulation of the argument User results in information disclosure.

This vulnerability is identified as CVE-2026-58503. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More