There is a SQL Injection vulnerability in ChurchCRM 4.4.5 via the 'PersonID' field in /churchcrm/WhyCameEditor.php.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-31325.json"