CVE-2023-31699
ChurchCRM v4.5.4 is vulnerable to Reflected Cross-Site Scripting (XSS) via image file.
ChurchCRM v4.5.4 is vulnerable to Reflected Cross-Site Scripting (XSS) via image file.
MEDIUM · CVSS 4.8
EPSS 0.01324
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0