cleantalk
Vulnerabilities and Security Researches

FormLift for Infusionsoft Web Forms, CVE-2025-47654

CVE, Research URL

CVE-2025-47654

Published on
Jun 27, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Adrian Tobey FormLift for Infusionsoft Web Forms allows Reflected XSS. This issue affects FormLift for Infusionsoft Web Forms: from n/a through 7.5.20.
Affected versions
Min -, max 7.5.20.
Status
vulnerable