Logging of Excessive Data in SuiteCRM - CVE-2024-36416
Published: June 10, 2024 / Updated: April 24, 2026
SuiteCRM
SalesAgility
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to logging of excessive data in the deprecated v4 API example when handling requests to the service/example/ directory. A remote attacker can send requests that generate excessive log data to cause a denial of service.
The issue affects the deprecated v4 API example and does not require user interaction.