CVE-2025-24708 – Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable, and Ninja Forms Cross-site Scripting (XSS)

Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in CRM Perks WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms allows Reflected XSS. This issue affects WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms: from n/a through 1.1.6.

Share the Post:

Related Posts