SSTI in ERPNext (Frappe) Email Template Engine
I. Description
The Email Template engine is vulnerable to Server-Side Template Injection (SSTI).An attacker with permission to create or edit email templates can inject template expressions that are e
c0wking.hashnode.dev1 min read