PT-2025-39034 · Getresponse · Getresponse Forms

Published

2025-09-22

·

Updated

2025-09-22

·

CVE-2025-59549

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions GetResponse Forms versions through 2.6.0
Description An issue exists in GetResponse Forms related to improper neutralization of input during web page generation, leading to a Stored Cross-Site Scripting (XSS) condition. The issue allows for the execution of malicious scripts on affected web pages. The vulnerability affects the application's handling of user-supplied data when generating web content.
Recommendations Update GetResponse Forms to a version later than 2.6.0.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-59549

Affected Products

Getresponse Forms