cleantalk
Vulnerabilities and Security Researches

FormLift for Infusionsoft Web Forms, CVE-2025-31434

CVE, Research URL

CVE-2025-31434

Published on
Mar 28, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Adrian Tobey FormLift for Infusionsoft Web Forms allows Stored XSS. This issue affects FormLift for Infusionsoft Web Forms: from n/a through 7.5.19.
Affected versions
Min -, max 7.5.20.
Status
vulnerable