CVE-2025-24708 - Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable, and Ninja Forms Cross-site Scripting (XSS)
CVE ID : CVE-2025-24708 Published : Jan. 27, 2025, 3:15 p.m. | 1 hour, 29 minutes ago Description : Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CRM Perks WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms allows Reflected XSS. This issue affects WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms: from n/a through 1.1.6. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...
![CVE-2025-24708 - Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable, and Ninja Forms Cross-site Scripting (XSS)](https://cdn.cvefeed.io/images/cvefeed.io-new.webp)
Published : Jan. 27, 2025, 3:15 p.m. | 1 hour, 29 minutes ago
Description : Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CRM Perks WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms allows Reflected XSS. This issue affects WP Dynamics CRM for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms: from n/a through 1.1.6.
Severity: 7.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...