
[CVE-2026-35573: CRITICAL] ChurchCRM, an open-source church management system, fixed a path traversal vulnerability in version 6.5.3, preventing remote code execution for authenticated admins during file upl...#cve,CVE-2026-35573,#cybersecurity https://cvefind.com/CVE-2026-35573
Post summary
ChurchCRM released a patch in version 6.5.3 that resolves a critical path traversal flaw, preventing authenticated admins from achieving remote code execution.


