Medium severityNVD Advisory· Published Jun 24, 2026· Updated Jun 25, 2026
CVE-2026-50701
CVE-2026-50701
Description
A Reflected Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the dashboard-view component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: = 17.0.0-dev
Patches
Vulnerability mechanics
References
1News mentions
1- Frappe Framework 17.0.0-dev: Seven XSS Vulnerabilities Disclosed TogetherVypr Intelligence · Jun 24, 2026