Authenticated Remote Code Execution Vulnerability in SuiteCRM by SalesAgility
CVE-2026-29102
7.2HIGH
What is CVE-2026-29102?
SuiteCRM, the open-source Customer Relationship Management (CRM) platform developed by SalesAgility, has a vulnerability that allows authenticated users to execute arbitrary code remotely. Prior to versions 7.15.1 and 8.9.3, this significant security issue could lead to unauthorized actions within the CRM, potentially compromising sensitive data. Users are strongly advised to update to the latest versions to protect against this vulnerability.
Affected Version(s)
SuiteCRM < 7.15.1 < 7.15.1
SuiteCRM >= 8.0.0, < 8.9.3 < 8.0.0, 8.9.3
