Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Online Shopping Portal Project — Vulnerabilities & Security Advisories 13

All 13 CVE vulnerabilities found in Online Shopping Portal Project, with AI-generated Chinese analysis, references, and POCs.

This page documents known security weaknesses associated with the Online Shopping Portal Project, categorizing them by vendor, product lineage, and common weakness types. It serves as a comprehensive reference for understanding the specific threat landscape surrounding this e-commerce platform and its underlying software components. The content on this page aggregates vulnerability reports collected from various public sources, vendor advisories, and security research databases. The time range covered spans from the initial release of the project up to the most recent updates, ensuring that both legacy issues and contemporary threats are accounted for. This historical perspective allows for a thorough analysis of how the security posture of the product has evolved over time in response to emerging attack vectors and patch management practices. By utilizing the navigation and filtering tools on this page, users can efficiently track a vendor’s security advisories to stay informed about critical patches and mitigations. Readers can also understand a specific weakness class by examining multiple instances of the same vulnerability type across different components, revealing patterns in code quality or design flaws. Additionally, one can look up a product’s vulnerability history to assess long-term stability and the effectiveness of ongoing security maintenance efforts. This structured approach facilitates better risk assessment for stakeholders relying on the Online Shopping Portal Project, enabling more informed decisions regarding deployment, upgrades, and security hardening strategies without needing to sift through unorganized data sources.

Vendor: PHPGurukul

CVE ID Title CVSS Severity Published
CVE-2026-5641 PHPGurukul Online Shopping Portal Project Parameter update-image1.php sql injection CWE-89 6.3 Medium 2026-04-06
CVE-2026-5640 PHPGurukul Online Shopping Portal Project Parameter update-image2.php sql injection CWE-89 6.3 Medium 2026-04-06
CVE-2026-5639 PHPGurukul Online Shopping Portal Project Parameter update-image3.php sql injection CWE-89 6.3 Medium 2026-04-06
CVE-2026-5636 PHPGurukul Online Shopping Portal Project Parameter cancelorder.php sql injection CWE-89 6.3 Medium 2026-04-06
CVE-2026-5635 PHPGurukul Online Shopping Portal Project Parameter categorywise-products.php sql injection CWE-89 6.3 Medium 2026-04-06
CVE-2026-5606 PHPGurukul Online Shopping Portal Project Parameter order-details.php sql injection CWE-89 6.3 Medium 2026-04-06
CVE-2026-5583 PHPGurukul Online Shopping Portal Project Parameter my-profile.php sql injection CWE-89 6.3 Medium 2026-04-05
CVE-2026-5560 PHPGurukul Online Shopping Portal Project Parameter payment-method.php sql injection CWE-89 6.3 Medium 2026-04-05
CVE-2026-5552 PHPGurukul Online Shopping Portal Project Parameter sub-category.php sql injection CWE-89 6.3 Medium 2026-04-05
CVE-2025-9013 PHPGurukul Online Shopping Portal Project password-recovery.php sql injection CWE-89 7.3 High 2025-08-15
CVE-2025-9012 PHPGurukul Online Shopping Portal Project bill-ship-addresses.php sql injection CWE-89 7.3 High 2025-08-15
CVE-2025-9011 PHPGurukul Online Shopping Portal Project signup.php sql injection CWE-89 7.3 High 2025-08-15
CVE-2025-5367 PHPGurukul Online Shopping Portal Project category.php sql injection CWE-89 7.3 High 2025-05-31

All 13 known CVE vulnerabilities affecting Online Shopping Portal Project with full Chinese analysis, references, and POCs where available.