cleantalk
Vulnerabilities and Security Researches

Form Builder CP, CVE-2025-24672

CVE, Research URL

CVE-2025-24672

Application

Form Builder CP

Published on
Jan 24, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CodePeople Form Builder CP allows SQL Injection. This issue affects Form Builder CP: from n/a through 1.2.41.
Affected versions
Min -, max 1.2.42.
Status
vulnerable