Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

PHPGurukul — Vulnerabilities & Security Advisories 707

Browse all 707 CVE security advisories affecting PHPGurukul. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PHPGurukul operates as an educational platform providing free coding tutorials and project resources, primarily targeting students and beginners in web development. Despite its benign educational intent, the platform has been associated with a significant number of security issues, currently holding 705 recorded CVEs. These vulnerabilities predominantly stem from poorly secured downloadable source code and outdated scripts shared within its repository. Common flaw classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often resulting from insufficient input validation and hardcoded credentials in legacy projects. While PHPGurukul itself is not typically the direct target of sophisticated attacks, the widespread distribution of its unpatched materials creates a substantial attack surface for downstream users. The high volume of CVEs reflects systemic neglect in code review processes rather than a single major breach, highlighting the risks inherent in distributing unvetted software assets to novice developers.

Found 13 results / 707Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-5641 PHPGurukul Online Shopping Portal Project Parameter update-image1.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-06
CVE-2026-5640 PHPGurukul Online Shopping Portal Project Parameter update-image2.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-06
CVE-2026-5639 PHPGurukul Online Shopping Portal Project Parameter update-image3.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-06
CVE-2026-5636 PHPGurukul Online Shopping Portal Project Parameter cancelorder.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-06
CVE-2026-5635 PHPGurukul Online Shopping Portal Project Parameter categorywise-products.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-06
CVE-2026-5606 PHPGurukul Online Shopping Portal Project Parameter order-details.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-06
CVE-2026-5583 PHPGurukul Online Shopping Portal Project Parameter my-profile.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-05
CVE-2026-5560 PHPGurukul Online Shopping Portal Project Parameter payment-method.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-05
CVE-2026-5552 PHPGurukul Online Shopping Portal Project Parameter sub-category.php sql injection — Online Shopping Portal ProjectCWE-89 6.3 Medium2026-04-05
CVE-2025-9013 PHPGurukul Online Shopping Portal Project password-recovery.php sql injection — Online Shopping Portal ProjectCWE-89 7.3 High2025-08-15
CVE-2025-9012 PHPGurukul Online Shopping Portal Project bill-ship-addresses.php sql injection — Online Shopping Portal ProjectCWE-89 7.3 High2025-08-15
CVE-2025-9011 PHPGurukul Online Shopping Portal Project signup.php sql injection — Online Shopping Portal ProjectCWE-89 7.3 High2025-08-15
CVE-2025-5367 PHPGurukul Online Shopping Portal Project category.php sql injection — Online Shopping Portal ProjectCWE-89 7.3 High2025-05-31

This page lists every published CVE security advisory associated with PHPGurukul. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.