Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

PHPGurukul — Vulnerabilities & Security Advisories 720

Browse all 720 CVE security advisories affecting PHPGurukul. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PHPGurukul operates as an educational platform providing free coding tutorials and project resources, primarily targeting students and beginners in web development. Despite its benign educational intent, the platform has been associated with a significant number of security issues, currently holding 705 recorded CVEs. These vulnerabilities predominantly stem from poorly secured downloadable source code and outdated scripts shared within its repository. Common flaw classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often resulting from insufficient input validation and hardcoded credentials in legacy projects. While PHPGurukul itself is not typically the direct target of sophisticated attacks, the widespread distribution of its unpatched materials creates a substantial attack surface for downstream users. The high volume of CVEs reflects systemic neglect in code review processes rather than a single major breach, highlighting the risks inherent in distributing unvetted software assets to novice developers.

CVE ID Title CVSS Severity Published
CVE-2025-5370 PHPGurukul News Portal forgot-password.php sql injection — News Portal CWE-89 7.3 High 2025-05-31
CVE-2025-5368 PHPGurukul Daily Expense Tracker System expense-yearwise-reports-detailed.php sql injection — Daily Expense Tracker System CWE-89 6.3 Medium 2025-05-31
CVE-2025-5367 PHPGurukul Online Shopping Portal Project category.php sql injection — Online Shopping Portal Project CWE-89 7.3 High 2025-05-31
CVE-2025-5358 PHPGurukul/Campcodes Cyber Cafe Management System bwdates-reports-details.php sql injection — Cyber Cafe Management System CWE-89 7.3 High 2025-05-30
CVE-2025-5252 PHPGurukul News Portal Project edit-subadmin.php sql injection — News Portal Project CWE-89 7.3 High 2025-05-27
CVE-2025-5251 PHPGurukul News Portal Project edit-subcategory.php sql injection — News Portal Project CWE-89 7.3 High 2025-05-27
CVE-2025-5250 PHPGurukul News Portal Project edit-category.php sql injection — News Portal Project CWE-89 7.3 High 2025-05-27
CVE-2025-5249 PHPGurukul News Portal Project add-category.php sql injection — News Portal Project CWE-89 7.3 High 2025-05-27
CVE-2025-5248 PHPGurukul Company Visitor Management System bwdates-reports-details.php sql injection — Company Visitor Management System CWE-89 7.3 High 2025-05-27
CVE-2025-5232 PHPGurukul Student Study Center Management System report.php sql injection — Student Study Center Management System CWE-89 4.7 Medium 2025-05-27
CVE-2025-5231 PHPGurukul Company Visitor Management System forgot-password.php sql injection — Company Visitor Management System CWE-89 7.3 High 2025-05-27
CVE-2025-5230 PHPGurukul Online Nurse Hiring System bwdates-report-details.php sql injection — Online Nurse Hiring System CWE-89 7.3 High 2025-05-27
CVE-2025-5227 PHPGurukul Small CRM manage-tickets.php sql injection — Small CRM CWE-89 7.3 High 2025-05-27
CVE-2025-5226 PHPGurukul Small CRM change-password.php sql injection — Small CRM CWE-89 7.3 High 2025-05-27
CVE-2025-5216 PHPGurukul Student Record System login.php sql injection — Student Record System CWE-89 7.3 High 2025-05-27
CVE-2025-5212 PHPGurukul Employee Record Management System editempexp.php sql injection — Employee Record Management System CWE-89 7.3 High 2025-05-26
CVE-2025-5211 PHPGurukul Employee Record Management System myprofile.php sql injection — Employee Record Management System CWE-89 7.3 High 2025-05-26
CVE-2025-5210 PHPGurukul Employee Record Management System loginerms.php sql injection — Employee Record Management System CWE-89 7.3 High 2025-05-26
CVE-2025-5079 PHPGurukul/Campcodes Online Shopping Portal updateorder.php sql injection — Online Shopping Portal CWE-89 7.3 High 2025-05-22
CVE-2025-5078 PHPGurukul/Campcodes Online Shopping Portal subcategory.php sql injection — Online Shopping Portal CWE-89 7.3 High 2025-05-22
CVE-2025-4941 PHPGurukul Credit Card Application Management System index.php sql injection — Credit Card Application Management System CWE-89 7.3 High 2025-05-19
CVE-2025-4939 PHPGurukul Credit Card Application Management System new-ccapplication.php cross site scripting — Credit Card Application Management System CWE-79 4.3 Medium 2025-05-19
CVE-2025-4938 PHPGurukul Employee Record Management System registererms.php sql injection — Employee Record Management System CWE-89 6.3 Medium 2025-05-19
CVE-2025-4934 PHPGurukul User Registration & Login and User Management System edit-profile.php sql injection — User Registration & Login and User Management System CWE-89 7.3 High 2025-05-19
CVE-2025-4927 PHPGurukul Online Marriage Registration System between-dates-application-report.php sql injection — Online Marriage Registration System CWE-89 7.3 High 2025-05-19
CVE-2025-4926 PHPGurukul Car Rental Project post-avehical.php unrestricted upload — Car Rental Project CWE-434 4.7 Medium 2025-05-19
CVE-2025-4925 PHPGurukul Daily Expense Tracker System expense-monthwise-reports-detailed.php sql injection — Daily Expense Tracker System CWE-89 7.3 High 2025-05-19
CVE-2025-4917 PHPGurukul Auto Taxi Stand Management System new-autoortaxi-entry-form.php sql injection — Auto Taxi Stand Management System CWE-89 7.3 High 2025-05-19
CVE-2025-4916 PHPGurukul Auto Taxi Stand Management System admin-profile.php sql injection — Auto Taxi Stand Management System CWE-89 7.3 High 2025-05-19
CVE-2025-4915 PHPGurukul Auto Taxi Stand Management System auto-taxi-entry-detail.php sql injection — Auto Taxi Stand Management System CWE-89 7.3 High 2025-05-19

This page lists every published CVE security advisory associated with PHPGurukul. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.