LimeSurvey Improper Neutralization of CRLF Sequences (CRLF Injection) Vulnerability - CVE-2025-41376
CRLF Injection vulnerability in Limesurvey v2.65.1170522. This vulnerability could allow a remote attacker to inject arbitrary HTTP headers and perform HTTP response splitting attacks via 39/index.php/survey/index/sid/ltSIDgt/token/fwyfw0d0aCookie:20POC39.