Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

PHPGurukul — Vulnerabilities & Security Advisories 705

Browse all 705 CVE security advisories affecting PHPGurukul. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PHPGurukul operates as an educational platform providing free coding tutorials and project resources, primarily targeting students and beginners in web development. Despite its benign educational intent, the platform has been associated with a significant number of security issues, currently holding 705 recorded CVEs. These vulnerabilities predominantly stem from poorly secured downloadable source code and outdated scripts shared within its repository. Common flaw classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often resulting from insufficient input validation and hardcoded credentials in legacy projects. While PHPGurukul itself is not typically the direct target of sophisticated attacks, the widespread distribution of its unpatched materials creates a substantial attack surface for downstream users. The high volume of CVEs reflects systemic neglect in code review processes rather than a single major breach, highlighting the risks inherent in distributing unvetted software assets to novice developers.

CVE IDTitleCVSSSeverityPublished
CVE-2024-12999 PHPGurukul Small CRM edit-user.php sql injection — Small CRMCWE-89 6.3 Medium2024-12-29
CVE-2024-12982 PHPGurukul Blood Bank & Donor Management System update-contactinfo.php cross site scripting — Blood Bank & Donor Management SystemCWE-79 2.4 Low2024-12-27
CVE-2024-12977 PHPGurukul Complaint Management System state.php sql injection — Complaint Management SystemCWE-89 6.3 Medium2024-12-27
CVE-2024-12955 PHPGurukul Blood Bank & Donor Management System logout.php cross-site request forgery — Blood Bank & Donor Management SystemCWE-352 4.3 Medium2024-12-26
CVE-2024-12230 PHPGurukul Complaint Management System subcategory.php sql injection — Complaint Management SystemCWE-89 7.3 High2024-12-05
CVE-2024-12229 PHPGurukul Complaint Management System complaint-search.php sql injection — Complaint Management SystemCWE-89 7.3 High2024-12-05
CVE-2024-12228 PHPGurukul Complaint Management System user-search.php sql injection — Complaint Management SystemCWE-89 7.3 High2024-12-05
CVE-2024-11967 PHPGurukul Complaint Management system reset-password.php sql injection — Complaint Management systemCWE-89 7.3 High2024-11-28
CVE-2024-11966 PHPGurukul Complaint Management system index.php sql injection — Complaint Management systemCWE-89 7.3 High2024-11-28
CVE-2024-11965 PHPGurukul Complaint Management system reset-password.php sql injection — Complaint Management systemCWE-89 7.3 High2024-11-28
CVE-2024-11964 PHPGurukul Complaint Management system index.php sql injection — Complaint Management systemCWE-89 7.3 High2024-11-28
CVE-2024-11818 PHPGurukul User Registration & Login and User Management System signup.php sql injection — User Registration & Login and User Management SystemCWE-89 7.3 High2024-11-26
CVE-2024-11817 PHPGurukul User Registration & Login and User Management System index.php sql injection — User Registration & Login and User Management SystemCWE-89 7.3 High2024-11-26
CVE-2024-10807 PHPGurukul Hospital Management System search.php cross site scripting — Hospital Management SystemCWE-79 2.4 Low2024-11-05
CVE-2024-10806 PHPGurukul Hospital Management System betweendates-detailsreports.php cross site scripting — Hospital Management SystemCWE-79 2.4 Low2024-11-05
CVE-2024-10768 PHPGurukul Online Shopping Portal two_tables.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-04
CVE-2024-10757 PHPGurukul Online Shopping Portal js_data.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-04
CVE-2024-10756 PHPGurukul Online Shopping Portal html_table.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-04
CVE-2024-10755 PHPGurukul Online Shopping Portal empty_table.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-04
CVE-2024-10754 PHPGurukul Online Shopping Portal dymanic_table.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-04
CVE-2024-10753 PHPGurukul Online Shopping Portal dom_data_two_headers.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-04
CVE-2024-10747 PHPGurukul Online Shopping Portal dom_data_th.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-04
CVE-2024-10746 PHPGurukul Online Shopping Portal dom_data.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-03
CVE-2024-10745 PHPGurukul Online Shopping Portal deferred_table.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-03
CVE-2024-10744 PHPGurukul Online Shopping Portal complex_header_2.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-03
CVE-2024-10743 PHPGurukul Online Shopping Portal editable_ajax.php cross site scripting — Online Shopping PortalCWE-79 3.5 Low2024-11-03
CVE-2024-10701 PHPGurukul Car Rental Portal search.php cross site scripting — Car Rental PortalCWE-79 3.5 Low2024-11-02
CVE-2024-10414 PHPGurukul Vehicle Record System edit-brand.php cross site scripting — Vehicle Record SystemCWE-79 2.4 Low2024-10-27
CVE-2024-10331 PHPGurukul Vehicle Record System search-vehicle.php sql injection — Vehicle Record SystemCWE-89 6.3 Medium2024-10-24
CVE-2024-10301 PHPGurukul Medical Card Generation System Search search-medicalcard.php sql injection — Medical Card Generation SystemCWE-89 4.7 Medium2024-10-23

This page lists every published CVE security advisory associated with PHPGurukul. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.