PT-2025-52146 · WordPress · Wp Gravity Forms Insightly

·

CVE-2025-60090

·

Published

2025-12-18

·

Updated

2025-12-18

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions CRM Perks WP Gravity Forms Insightly versions through 1.1.6
Description The software contains a flaw related to the deserialization of untrusted data, which allows for object injection. This issue impacts the WP Gravity Forms Insightly plugin.
Recommendations Update to a version of CRM Perks WP Gravity Forms Insightly later than 1.1.6.

Fix

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-60090

Affected Products

Wp Gravity Forms Insightly