Loading
ERP is a free and open source Enterprise Resource Planning tool. In versions up to 15.98.0 and 16.0.0-rc.1 and through 16.6.0, certain endpoints lacked access validation which allowed for unauthorized document access. This issue has been fixed in versions 15.98.1 and 16.6.1.
Cite this page
CVE-2026-27471. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2026-27471
Use CWE-284, Frappe vendor hub and Erpnext product page to widen CVE-2026-27471 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-67289, CVE-2026-31017 and CVE-2025-66440 for nearby disclosures in the same product family.