Cross-Site Scripting Vulnerability in Church Admin by Andy Moyle
CVE-2025-39555

Currently unrated

Key Information:

Vendor

Andy Moyle

Vendor
CVE Published:
16 April 2025

What is CVE-2025-39555?

A Cross-Site Scripting (XSS) vulnerability exists in the Church Admin plugin developed by Andy Moyle. This vulnerability allows attackers to inject malicious scripts into web pages, potentially affecting users who visit the compromised pages. The issue is present in all versions preceding 5.0.23, making older installations particularly susceptible to exploitation. Website administrators should urgently take steps to update to the latest version and ensure robust security measures are in place to safeguard user interactions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

.