Server Resource Exhaustion Vulnerability in LimeSurvey by LimeSurvey Project
CVE-2025-41075
6.9MEDIUM
What is CVE-2025-41075?
A vulnerability in LimeSurvey 6.13.0 is present in the endpoint /optin, which induces infinite HTTP redirects upon direct access. This can be exploited by attackers to trigger a Denial of Service (DoS) condition, thereby exhausting server or client resources. The vulnerability's inherent inability to terminate the redirect loop may lead to significant service degradation or instability in web browsers.
Affected Version(s)
LimeSurvey 6.13.0
