PT-2025-39034 · Getresponse · Getresponse Forms

CVE-2025-59549

·

Publicado

2025-09-22

·

Atualizado

2025-09-22

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions GetResponse Forms versions through 2.6.0
Description An issue exists in GetResponse Forms related to improper neutralization of input during web page generation, leading to a Stored Cross-Site Scripting (XSS) condition. The issue allows for the execution of malicious scripts on affected web pages. The vulnerability affects the application's handling of user-supplied data when generating web content.
Recommendations Update GetResponse Forms to a version later than 2.6.0.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-59549

Produtos afetados

Getresponse Forms