Suitecrm · Suitecrm · CVE-2024-36416
**Name of the Vulnerable Software and Affected Versions**
SuiteCRM versions prior to 7.14.4
SuiteCRM versions prior to 8.6.1
**Description**
The issue is related to a deprecated v4 API example with no log rotation, which allows denial of service by logging excessive data. This can lead to denial of service attacks due to API issues.
**Recommendations**
For versions prior to 7.14.4, update to version 7.14.4 or later.
For versions prior to 8.6.1, update to version 8.6.1 or later.
As a temporary workaround, consider disabling the deprecated v4 API example until a patch is available.
Restrict access to the API endpoint to minimize the risk of exploitation.