A vulnerability identified as problematic has been detected in ChurchCRM up to 6.4.0. This vulnerability affects unknown code of the file GroupView.php. This manipulation causes cross site scripting.

This vulnerability is tracked as CVE-2025-67876. The attack is possible to be carried out remotely. No exploit exists.