CVE List

CVE-2025-56422

Severe 9.8

A deserialization vulnerability in LimeSurvey before v6.15.0+250623 allows a remote attacker to execute arbitrary code on the server.

Published March 10, 2026.

Affected software

Get alerts for Limesurvey Limesurvey

Reference links