SQL Injection vulnerability in Limesurvey v2.65.1+170522. This vulnerability allows an attacker to retrieve, create, update and delete database via 'token' parameter in '/index.php' endpoint.
{ "versions": [ { "introduced": "2.65.1" }, { "fixed": "3.0.0" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-41375.json"