SuiteCRM through 7.11.13 has an Open Redirect in the Documents module via a crafted SVG document.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15300
Reference (s):
- https://www.wizlynxgroup.com/security-research-advisories/vuln/WLX-2020-009

