PT-2025-43853 · Crm Perks+1 · Wp Gravity Forms Zoho Crm/Bigin+1

CVE-2025-62981

·

Published

2025-10-21

·

Updated

2025-10-27

CVSS v3.1

4.7

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions WP Gravity Forms Zoho CRM and Bigin versions prior to 1.2.9
Description An Open Redirect issue exists due to insufficient validation of the supplied redirect URL. This allows unauthenticated attackers to redirect users to potentially malicious sites if they can be tricked into performing a specific action, which can be used to facilitate phishing attacks.
Recommendations Update the plugin to a version newer than 1.2.8.

Fix

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-62981

Affected Products

Wp Gravity Forms Zoho Crm/Bigin
Gf-Zoho