CVE-2026-35578 | ChurchCRM up to 6.x DonatedItemEditor.php redirect
A vulnerability marked as problematic has been reported in ChurchCRM up to 6.x. This issue affects some unknown processing of the file DonatedItemEditor.php. Performing a manipulation results in open redirect.
This vulnerability is identified as CVE-2026-35578. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.