Skip to content

Known CVE

ChurchCRM v4.5.3 - Cross-Site Scripting

A stored Cross-site scripting (XSS) vulnerability in the FundRaiserEditor.php component of ChurchCRM v4.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

CVE-2023-31548

Medium2023CVSS 5.4CWE-79

cve2023 · churchcrm · stored-xss · xss · authenticated · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website