SuiteCRM 7.11.13 is affected by stored Cross-Site Scripting (XSS) in the Documents preview functionality. This vulnerability could allow remote authenticated attackers to inject arbitrary web script or HTML.
- https://www.wizlynxgroup.com/security-research-advisories/vuln/WLX-2020-008
No PoCs found on GitHub currently.