Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

PHPGurukul — Vulnerabilities & Security Advisories 720

Browse all 720 CVE security advisories affecting PHPGurukul. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PHPGurukul operates as an educational platform providing free coding tutorials and project resources, primarily targeting students and beginners in web development. Despite its benign educational intent, the platform has been associated with a significant number of security issues, currently holding 705 recorded CVEs. These vulnerabilities predominantly stem from poorly secured downloadable source code and outdated scripts shared within its repository. Common flaw classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often resulting from insufficient input validation and hardcoded credentials in legacy projects. While PHPGurukul itself is not typically the direct target of sophisticated attacks, the widespread distribution of its unpatched materials creates a substantial attack surface for downstream users. The high volume of CVEs reflects systemic neglect in code review processes rather than a single major breach, highlighting the risks inherent in distributing unvetted software assets to novice developers.

Found 12 results / 720 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-1160 PHPGurukul Directory Management System Search index.php sql injection — Directory Management System CWE-89 7.3 High 2026-01-19
CVE-2025-9656 PHPGurukul Directory Management System add-directory.php cross site scripting — Directory Management System CWE-79 4.3 Medium 2025-08-29
CVE-2025-6333 PHPGurukul Directory Management System admin-profile.php sql injection — Directory Management System CWE-89 6.3 Medium 2025-06-20
CVE-2025-6332 PHPGurukul Directory Management System manage-directory.php sql injection — Directory Management System CWE-89 6.3 Medium 2025-06-20
CVE-2025-6331 PHPGurukul Directory Management System search-directory.php sql injection — Directory Management System CWE-89 6.3 Medium 2025-06-20
CVE-2025-6330 PHPGurukul Directory Management System searchdata.php sql injection — Directory Management System CWE-89 7.3 High 2025-06-20
CVE-2025-4862 PHPGurukul Directory Management System searchdata.php cross site scripting — Directory Management System CWE-79 4.3 Medium 2025-05-18
CVE-2025-4698 PHPGurukul Directory Management System forget-password.php sql injection — Directory Management System CWE-89 7.3 High 2025-05-15
CVE-2025-4697 PHPGurukul Directory Management System edit-directory.php sql injection — Directory Management System CWE-89 7.3 High 2025-05-15
CVE-2024-5137 PHPGurukul Directory Management System Searchbar admin-profile.php cross site scripting — Directory Management System CWE-79 2.4 Low 2024-05-20
CVE-2024-5136 PHPGurukul Directory Management System search-directory.php. cross site scripting — Directory Management System CWE-79 2.4 Low 2024-05-20
CVE-2024-5135 PHPGurukul Directory Management System index.php sql injection — Directory Management System CWE-89 7.3 High 2024-05-20

This page lists every published CVE security advisory associated with PHPGurukul. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.