CVE-2025-30954

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks WP Gravity Forms Constant Contact Plugin gf-constant-contact allows Phishing.This issue affects WP Gravity Forms Constant Contact Plugin: from n/a through <= 1.1.0.
Configurations

No configuration.

History

23 Apr 2026, 15:27

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.7

01 Apr 2026, 17:20

Type Values Removed Values Added
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/gf-constant-contact/vulnerability/wordpress-wp-gravity-forms-constant-contact-plugin-1-1-0-open-redirection-vulnerability?_s_id=cve', 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/gf-constant-contact/vulnerability/wordpress-wp-gravity-forms-constant-contact-plugin-1-1-0-open-redirection-vulnerability?_s_id=cve -
CVSS v2 : unknown
v3 : 4.7
v2 : unknown
v3 : unknown
Summary
  • (es) La vulnerabilidad de redirección de URL a un sitio no confiable ('Open Redirect') en CRM Perks WP Gravity Forms Constant Contact Plugin permite el phishing. Este problema afecta a WP Gravity Forms Constant Contact Plugin desde n/d hasta la versión 1.1.0.
Summary (en) URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks WP Gravity Forms Constant Contact Plugin allows Phishing. This issue affects WP Gravity Forms Constant Contact Plugin: from n/a through 1.1.0. (en) URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks WP Gravity Forms Constant Contact Plugin gf-constant-contact allows Phishing.This issue affects WP Gravity Forms Constant Contact Plugin: from n/a through <= 1.1.0.

06 Jun 2025, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-06 13:15

Updated : 2026-04-23 15:27


NVD link : CVE-2025-30954

Mitre link : CVE-2025-30954

CVE.ORG link : CVE-2025-30954


JSON object : View

Products Affected

No product.

CWE
CWE-601

URL Redirection to Untrusted Site ('Open Redirect')