Headline
CVE-2023-26842: CVE-Disclosures/ChurchCRM/CVE-2023-26842 at main · 10splayaSec/CVE-Disclosures
A stored Cross-site scripting (XSS) vulnerability in ChurchCRM 4.5.3 allows remote attackers to inject arbitrary web script or HTML via the OptionManager.php.
A tag already exists with the provided branch name. Many Git commands accept both tag and branch names, so creating this branch may cause unexpected behavior. Are you sure you want to create this branch?