PoC Archive PoC Archive

tag

Crm

EspoCRM Authenticated RCE via Formula ACL Bypass + Attachment Path Traversal — CVE-2026-33656
CVE-2026-33656 web Patched
CVE-2026-33656webCRITICALPatched2026-07-05EspoCRM 9.3.3 Stored HTML Injection in Email Notifications — CVE-2026-33657
CVE-2026-33657 web Patched
CVE-2026-33657webMEDIUMPatched2026-07-05EspoCRM 9.3.3 Authenticated SSRF via Alternative IPv4 Loopback Notation — CVE-2026-33534
CVE-2026-33534 web Patched
CVE-2026-33534webMEDIUMPatched2026-07-05Dolibarr selectobject.php Authenticated Local File Inclusion (CVE-2026-34036)
CVE-2026-34036 web Patched
CVE-2026-34036webMEDIUMPatched2026-07-05