CVE-2026-66058 | Frappe up to 15.111.x/16.19.x Document Follow API update_follow privileges management
A vulnerability, which was classified as critical, has been found in Frappe up to 15.111.x/16.19.x. This affects the function update_follow of the component Document Follow API. The manipulation leads to improper privilege management.
This vulnerability is traded as CVE-2026-66058. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More