Known vulnerabilities in ChurchCRM ChurchCRM 6.4.0

Vendor: ChurchCRM
Website: https://churchcrm.io/
Total Security Bulletins: 2

Security bulletins (2)

Secuity bulletin Severity Status Published
SB2026031628: Stored cross-site scripting in ChurchCRM Low
Patched Public exploit
16.03.2026
SB2025120312: SQL injection in ChurchCRM Low
Patched
03.12.2025