Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

PHPGurukul — Vulnerabilities & Security Advisories 720

Browse all 720 CVE security advisories affecting PHPGurukul. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PHPGurukul operates as an educational platform providing free coding tutorials and project resources, primarily targeting students and beginners in web development. Despite its benign educational intent, the platform has been associated with a significant number of security issues, currently holding 705 recorded CVEs. These vulnerabilities predominantly stem from poorly secured downloadable source code and outdated scripts shared within its repository. Common flaw classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often resulting from insufficient input validation and hardcoded credentials in legacy projects. While PHPGurukul itself is not typically the direct target of sophisticated attacks, the widespread distribution of its unpatched materials creates a substantial attack surface for downstream users. The high volume of CVEs reflects systemic neglect in code review processes rather than a single major breach, highlighting the risks inherent in distributing unvetted software assets to novice developers.

Found 13 results / 720 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-5641 PHPGurukul Online Shopping Portal Project Parameter update-image1.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-06
CVE-2026-5640 PHPGurukul Online Shopping Portal Project Parameter update-image2.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-06
CVE-2026-5639 PHPGurukul Online Shopping Portal Project Parameter update-image3.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-06
CVE-2026-5636 PHPGurukul Online Shopping Portal Project Parameter cancelorder.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-06
CVE-2026-5635 PHPGurukul Online Shopping Portal Project Parameter categorywise-products.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-06
CVE-2026-5606 PHPGurukul Online Shopping Portal Project Parameter order-details.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-06
CVE-2026-5583 PHPGurukul Online Shopping Portal Project Parameter my-profile.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-05
CVE-2026-5560 PHPGurukul Online Shopping Portal Project Parameter payment-method.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-05
CVE-2026-5552 PHPGurukul Online Shopping Portal Project Parameter sub-category.php sql injection — Online Shopping Portal Project CWE-89 6.3 Medium 2026-04-05
CVE-2025-9013 PHPGurukul Online Shopping Portal Project password-recovery.php sql injection — Online Shopping Portal Project CWE-89 7.3 High 2025-08-15
CVE-2025-9012 PHPGurukul Online Shopping Portal Project bill-ship-addresses.php sql injection — Online Shopping Portal Project CWE-89 7.3 High 2025-08-15
CVE-2025-9011 PHPGurukul Online Shopping Portal Project signup.php sql injection — Online Shopping Portal Project CWE-89 7.3 High 2025-08-15
CVE-2025-5367 PHPGurukul Online Shopping Portal Project category.php sql injection — Online Shopping Portal Project CWE-89 7.3 High 2025-05-31

This page lists every published CVE security advisory associated with PHPGurukul. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.