CNNVD-202508-3225 Information

CNNVD ID

CNNVD-202508-3225

CVE-2025-52122

  • CNNVD Published: 2025-08-27

Description (Chinese)

Solspace Freeform plugin for Craft CMS是Solspace开源的一款插件。 Solspace Freeform plugin for Craft CMS 5.0.0至5.10.16之前版本存在安全漏洞,该漏洞源于服务器端模板注入,可能导致任意代码执行。

Description (English)

Solspace Freeform plugin for Craft CMS is an open plugin for Solspace. There was a security loophole in previous versions of Solspace Freeform plugin for Craft CMS 5.0.0 to 5.10.16, which originated from the injection of server-end templates and could lead to any code execution.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

Solspace

Published

2025-08-27

Last Modified

2026-02-24

References

https://github.com/TimTrademark/CVE-CraftCMS-Freeform https://github.com/TimTrademark/CVE-2025-52122 https://nvd.nist.gov/vuln/detail/CVE-2025-52122

Patch

https://plugins.craftcms.com/freeform

Share on: