Deserialization Vulnerability in LimeSurvey by LimeSurvey GmbH
CVE-2025-56422
9.8CRITICAL
What is CVE-2025-56422?
A deserialization flaw exists in LimeSurvey prior to version 6.15.0+250623 that enables remote attackers to execute arbitrary code on the server. This can lead to system compromise and data loss, making it crucial for users to upgrade to the latest version to mitigate potential risks.
