Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

PHPGurukul — Vulnerabilities & Security Advisories 720

Browse all 720 CVE security advisories affecting PHPGurukul. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PHPGurukul operates as an educational platform providing free coding tutorials and project resources, primarily targeting students and beginners in web development. Despite its benign educational intent, the platform has been associated with a significant number of security issues, currently holding 705 recorded CVEs. These vulnerabilities predominantly stem from poorly secured downloadable source code and outdated scripts shared within its repository. Common flaw classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often resulting from insufficient input validation and hardcoded credentials in legacy projects. While PHPGurukul itself is not typically the direct target of sophisticated attacks, the widespread distribution of its unpatched materials creates a substantial attack surface for downstream users. The high volume of CVEs reflects systemic neglect in code review processes rather than a single major breach, highlighting the risks inherent in distributing unvetted software assets to novice developers.

CVE ID Title CVSS Severity Published
CVE-2025-11503 PHPGurukul Beauty Parlour Management System manage-services.php sql injection — Beauty Parlour Management System CWE-89 7.3 High 2025-10-08
CVE-2025-11416 PHPGurukul Beauty Parlour Management System invoices.php sql injection — Beauty Parlour Management System CWE-89 7.3 High 2025-10-07
CVE-2025-11415 PHPGurukul Beauty Parlour Management System customer-list.php sql injection — Beauty Parlour Management System CWE-89 7.3 High 2025-10-07
CVE-2025-11390 PHPGurukul Cyber Cafe Management System POST Parameter search.php cross site scripting — Cyber Cafe Management System CWE-79 4.3 Medium 2025-10-07
CVE-2025-11330 PHPGurukul Beauty Parlour Management System sales-reports-detail.php sql injection — Beauty Parlour Management System CWE-89 6.3 Medium 2025-10-06
CVE-2025-11112 PHPGurukul Employee Record Management System myprofile.php cross site scripting — Employee Record Management System CWE-79 4.3 Medium 2025-09-28
CVE-2025-11053 PHPGurukul Small CRM forgot-password.php sql injection — Small CRM CWE-89 7.3 High 2025-09-27
CVE-2025-10794 PHPGurukul Car Rental Project search.php cross site scripting — Car Rental Project CWE-79 4.3 Medium 2025-09-22
CVE-2025-10664 PHPGurukul Small CRM create-ticket.php sql injection — Small CRM CWE-89 7.3 High 2025-09-18
CVE-2025-10663 PHPGurukul Online Course Registration my-profile.php sql injection — Online Course Registration CWE-89 7.3 High 2025-09-18
CVE-2025-10624 PHPGurukul User Management System login.php sql injection — User Management System CWE-89 7.3 High 2025-09-17
CVE-2025-10604 PHPGurukul Online Discussion Forum edit_member.php sql injection — Online Discussion Forum CWE-89 7.3 High 2025-09-17
CVE-2025-10603 PHPGurukul Online Discussion Forum search_result.php sql injection — Online Discussion Forum CWE-89 7.3 High 2025-09-17
CVE-2025-10459 PHPGurukul Beauty Parlour Management System all-appointment.php sql injection — Beauty Parlour Management System CWE-89 7.3 High 2025-09-15
CVE-2025-10403 PHPGurukul Beauty Parlour Management System view-enquiry.php sql injection — Beauty Parlour Management System CWE-89 7.3 High 2025-09-14
CVE-2025-10402 PHPGurukul Beauty Parlour Management System readenq.php sql injection — Beauty Parlour Management System CWE-89 7.3 High 2025-09-14
CVE-2025-40696 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-79 5.4AI Medium AI 2025-09-11
CVE-2025-40695 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-79 5.4AI Medium AI 2025-09-11
CVE-2025-40694 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-79 5.4AI Medium AI 2025-09-11
CVE-2025-40693 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-79 5.4AI Medium AI 2025-09-11
CVE-2025-40692 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-89 9.8AI Critical AI 2025-09-11
CVE-2025-40691 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-89 9.8AI Critical AI 2025-09-11
CVE-2025-40690 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-89 9.8AI Critical AI 2025-09-11
CVE-2025-40689 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-89 9.8AI Critical AI 2025-09-11
CVE-2025-40687 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting System CWE-89 9.8AI Critical AI 2025-09-11
CVE-2025-10114 PHPGurukul Small CRM profile.php sql injection — Small CRM CWE-89 7.3 High 2025-09-09
CVE-2025-10098 PHPGurukul User Management System edit-user-profile.php sql injection — User Management System CWE-89 6.3 Medium 2025-09-08
CVE-2025-10079 PHPGurukul Small CRM get-quote.php sql injection — Small CRM CWE-89 7.3 High 2025-09-08
CVE-2025-10025 PHPGurukul Online Course Registration semester.php sql injection — Online Course Registration CWE-89 7.3 High 2025-09-05
CVE-2025-9933 PHPGurukul Beauty Parlour Management System view-appointment.php sql injection — Beauty Parlour Management System CWE-89 7.3 High 2025-09-03

This page lists every published CVE security advisory associated with PHPGurukul. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.