CVE-2026-50703EPSS p32.4%
CVE-2026-50703CVE-2026-50703
Description
A Stored Cross-Site Scripting (XSS) vulnerability exists in Frappe Framework version 17.0.0-dev due to improper neutralization of user-controlled input in the Desk desktop icon renderer.
Scoring
| EPSS | 0.40% probability of exploitation · percentile 32.4% · 2026-10-05T12:00:23Z |
| Last modified | 2026-06-25 |