
CVE-2026-33733 EspoCRM is an open source customer relationship management application. Prior to version 9.3.4, the admin template management endpoints accept attacker-controlled `na… https://www.cve.org/CVERecord?id=CVE-2026-33733
Post summary
The CVE-2026-33733 flaw in EspoCRM allows attacker-controlled input to admin template endpoints, but a fix is already available starting with version 9.3.4.
