Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Teppay

#19477of 55,078
14.2Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-34064
6.5
2026-04-21
Frappe · Frappe Hr · CVE-2026-41320
**Name of the Vulnerable Software and Affected Versions** Frappe HR versions prior to 15.54.0 Frappe HR versions prior to 14.38.1 **Description** A specially crafted request sent to a specific endpoint can lead to SQL injection, a technique where malicious SQL statements are inserted into entry fields for execution, enabling an attacker to extract unauthorized information. **Recommendations** Update to version 15.54.0. Update to version 14.38.1.
PT-2026-21942
7.7
2026-02-25
Plane · Plane · CVE-2026-27706
**Name of the Vulnerable Software and Affected Versions** Plane versions prior to 1.2.2 **Description** A Server-Side Request Forgery (SSRF) flaw exists in the "Add Link" feature of Plane, allowing an authenticated attacker with general user privileges to send arbitrary GET requests to the internal network and retrieve the full response body. This can lead to the theft of sensitive data from internal services and cloud metadata endpoints. **Recommendations** Update to version 1.2.2 or later.