Church Admin <= 5.0.28 - Authenticated (Administrator+) Blind Server-Side Request Forgery via 'audio_url' Parameter
Church Admin
Minimum safe version
5.0.29
Update to 5.0.29 or later to address 31 fixable vulnerabilities
CVE-2025-57896
CVE-2025-39553
CVE-2025-39555
CVE-2025-26941
CVE-2024-53795
CVE-2024-50438
CVE-2024-37418
CVE-2024-37440
CVE-2024-35764
CVE-2024-35637
CVE-2024-34828
CVE-2024-32090
CVE-2024-31281
CVE-2024-31280
CVE-2024-30493
CVE-2024-30505
CVE-2024-30244
CVE-2024-30197
CVE-2024-30193
CVE-2023-38515
CVE-2023-34021
CVE-2023-30782
Church Admin <= 0.4.2 - Cross-Site Scripting (XSS)
Church Admin 0.33.2.1 - Unauthenticated Directory Traversal
WordPress Church Admin Plugin <= 0.33.4.5 - Cross Site Scripting
WordPress Church Admin Plugin - Cross Site Scripting
WordPress Church Admin plugin <=0.564 - Unauthenticated Directory Traversal vulnerability
CVE-2022-0833
CVE-2015-4127
CVE-2018-20971