Known CVE
ChurchCRM v4.5.3 - Cross-Site Scripting
A stored Cross-site scripting (XSS) vulnerability in the FundRaiserEditor.php component of ChurchCRM v4.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2023-31548
Medium2023CVSS 5.4CWE-79
cve2023 · churchcrm · stored-xss · xss · authenticated · vuln
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website