CVE-2024-58258
EUVD-2024-5477913.07.2025, 22:15
SugarCRM before 13.0.4 and 14.x before 14.0.1 allows SSRF in the API module because a limited type of code injection can occur.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| sugarcrm | sugarcrm | 𝑥 < 13.0.4 | CNA |
| sugarcrm | sugarcrm | 14 ≤ 𝑥 < 14.0.1 | CNA |