CVE-2019-20529
In core/doctype/prepared_report/prepared_report.py in Frappe 11 and 12, data files generated with Prepared Report were b
In core/doctype/prepared_report/prepared_report.py in Frappe 11 and 12, data files generated with Prepared Report were being stored as public files (no authentication is required to access.
having a link is sufficient) instead of private files.
HIGH · CVSS 7.5
EPSS 0.00365
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0