296,336
Total vulnerabilities in the database
SugarCRM CE <= 6.3.1 contains scripts that use "unserialize()" with user controlled input which allows remote attackers to execute arbitrary PHP code.
CVSS v3:
CVSS v2:
CWEs: