
CVE-2026-39341 ChurchCRM is an open-source church management system. Prior to 7.1.0, The application is vulnerable to time-based SQL injection due to an improper input validation. E… https://www.cve.org/CVERecord?id=CVE-2026-39341
Post summary
CVE-2026-39341 impacts ChurchCRM versions prior to 7.1.0 via a time-based SQL injection caused by improper input validation, with no additional information on proof of concept, exploitation, or mitigation provided.
