CVE-2025-62779

Severity CVSS v4.0:
LOW
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
27/10/2025
Last modified:
03/11/2025

Description

Frappe Learning is a learning system that helps users structure their content. In Frappe Learning 2.39.1 and earlier, users were able to add HTML through input fields in the Job Form.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:frappe:learning:*:*:*:*:*:*:*:* 2.0.0 (including) 2.39.2 (excluding)