CVE-2026-66001 | Frappe up to 15.113.x/16.25.x OAuth2 oauth2.py approve/authorize improper authorization

SecurityVulns

A vulnerability, which was classified as problematic, was found in Frappe up to 15.113.x/16.25.x. This vulnerability affects the function approve/authorize of the file frappe/integrations/oauth2.py of the component OAuth2. Such manipulation leads to improper authorization.

This vulnerability is documented as CVE-2026-66001. The attack can be executed remotely. There is not any exploit available.

You should upgrade the affected component.VulDB Recent EntriesRead More