Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.1
CVE-2019-25663
SuiteCRM 7.10.7 contains a SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injecting SQL code throu…
Suitecrm
after 7.10.7
HIGH 7.1
CVE-2019-25664
SuiteCRM 7.10.7 contains a time-based SQL injection vulnerability in the record parameter of the Users module DetailView action that allows authentic…
Suitecrm
after 7.10.7
HIGH 8.8
CVE-2025-64492
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 8.9.0 and below contain a time-bas…
Suitecrm
8.9.1+
MEDIUM 6.5
CVE-2025-64493
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 8.6.0 through 8.9.0, there is a…
Suitecrm
8.9.1+
MEDIUM 6.1
CVE-2025-64491
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 7.14.7 and below allow unauthentic…
Suitecrm
7.14.8+
HIGH 8.8
CVE-2025-64489
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 7.14.7 and prior, 8.0.0-beta.1 thr…
Suitecrm
7.14.8 / 8.9.1+
HIGH 8.3
CVE-2025-64490
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 7.14.7 and prior, 8.0.0-beta.1 thr…
Suitecrm
7.14.8 / 8.9.1+
HIGH 8.8
CVE-2025-64488
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 7.14.7 and below and 8.0.0-beta…
Suitecrm
7.14.8+
CRITICAL 9.8
CVE-2022-50589
SuiteCRM versions prior to 7.12.6 contain a SQL injection vulnerability within the processing of the ‘uid’ parameter within the ‘export’ functionalit…
Suitecrm
7.12.6+
MEDIUM 5.3
CVE-2022-50590
SuiteCRM versions prior to 7.12.6 contain a type confusion vulnerability within the processing of the ‘module’ parameter within the ‘deleteAttachment…
Suitecrm
7.12.6+
MEDIUM 6.1
CVE-2025-41384
Cross-Site Scripting (XSS) vulnerability reflected in SuiteCRM v7.14.1. This vulnerability allows an attacker to execute JavaScript code by modifying…
Suitecrm
Mitigation only
MEDIUM 6.1
CVE-2025-54784
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. There is a Cross Site Scripting (XSS) vulne…
Suitecrm
7.14.7 / 8.8.1+
MEDIUM 6.1
CVE-2025-54783
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Versions 7.14.6 and below have a Reflected …
Suitecrm
7.14.7+
HIGH 8.8
CVE-2025-54788
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions and below, the InboundEmail mod…
Suitecrm
7.14.7+
MEDIUM 5.3
CVE-2025-54786
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 7.14.6 and 8.8.0, the broken au…
Suitecrm
Mitigation only
HIGH 8.8
CVE-2025-54785
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In versions 7.14.6 and 8.8.0, user-supplie…
Suitecrm
Mitigation only
HIGH 8.8
CVE-2022-45185
An issue was discovered in SuiteCRM 7.12.7. Authenticated users can use CRM functions to upload malicious files. Then, deserialization can be used to…
Suitecrm
No fix yet
HIGH 8.1
CVE-2022-45186
An issue was discovered in SuiteCRM 7.12.7. Authenticated users can recover an arbitrary field of a database.
Suitecrm
No fix yet
MEDIUM 5.4
CVE-2024-50335
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. The "Publish Key" field in SuiteCRM's Edit …
Suitecrm
7.14.6 / 8.7.1+
HIGH 8.8
CVE-2024-50332
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Insufficient input value validation causes …
Suitecrm
7.14.6 / 8.7.1+
HIGH 8.8
CVE-2024-50333
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. User input is not validated and is written …
Suitecrm
7.14.6 / 8.7.1+
HIGH 7.2
CVE-2024-49774
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. SuiteCRM relies on the blacklist of functio…
Suitecrm
7.14.6 / 8.7.1+
MEDIUM 6.5
CVE-2024-49773
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Poor input validation in export allows auth…
Suitecrm
7.14.6 / 8.7.1+
HIGH 8.8
CVE-2024-49772
SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In SuiteCRM versions 7.14.4, poor input val…
Suitecrm
7.14.6 / 8.7.1+
MEDIUM 6.1
CVE-2024-36419
SuiteCRM is an open-source Customer Relationship Management (CRM) software application. A vulnerability in versions prior to 8.6.1 allows for Host He…
Suitecrm
8.6.1+
HIGH 8.8
CVE-2024-36418
SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, a vulnerability in connec…
Suitecrm
7.14.4 / 8.6.1+
CRITICAL 9.0
CVE-2024-36417
SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, an unverified IFrame can …
Suitecrm
7.14.4 / 8.6.1+
HIGH 8.8
CVE-2024-36415
SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, a vulnerability in upload…
Suitecrm
7.14.4 / 8.6.1+
HIGH 7.5
CVE-2024-36416
SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, a deprecated v4 API examp…
Suitecrm
7.14.4 / 8.6.1+
MEDIUM 6.5
CVE-2024-36414
SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6.1, a vulnerability in the co…
Suitecrm
7.14.4 / 8.6.1+