SugarCRM Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability - CVE-2019-14974
SugarCRM Enterprise 9.0.0 allows mobile/error-not-supported-platform.htmldesktop_url XSS.
SugarCRM Enterprise 9.0.0 allows mobile/error-not-supported-platform.htmldesktop_url XSS.