Critical severity9.8NVD Advisory· Published Nov 6, 2025· Updated Jul 15, 2026
CVE-2022-50589
CVE-2022-50589
Description
SuiteCRM versions prior to 7.12.6 contain a SQL injection vulnerability within the processing of the ‘uid’ parameter within the ‘export’ functionality. Successful exploitation allows remote unauthenticated attackers to ultimately execute arbitrary code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- blog.exodusintel.com/2022/06/09/salesagility-suitecrm-export-request-sql-injection-vulnerability/nvdThird Party Advisory
- www.vulncheck.com/advisories/suitecrm-sqli-via-export-functionalitynvdThird Party Advisory
- docs.suitecrm.com/admin/releases/7.12.x/nvdRelease Notes
News mentions
0No linked articles in our index yet.