logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-25898

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-25898

Description:
A XSS vulnerability was found in the ChurchCRM v.5.5.0 functionality, edit your event, where malicious JS or HTML code can be inserted in the Event Sermon field in EventEditor.php.
Last updated date:
02/12/2025
Type:
exploit
Confidence:
HIGH
Date of publishing:
02/12/2025
Reference url to background

https://github.com/ChurchCRM/CRM/issues/6851

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy