Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

PHPGurukul — Vulnerabilities & Security Advisories 705

Browse all 705 CVE security advisories affecting PHPGurukul. AI-powered Chinese analysis, POCs, and references for each vulnerability.

PHPGurukul operates as an educational platform providing free coding tutorials and project resources, primarily targeting students and beginners in web development. Despite its benign educational intent, the platform has been associated with a significant number of security issues, currently holding 705 recorded CVEs. These vulnerabilities predominantly stem from poorly secured downloadable source code and outdated scripts shared within its repository. Common flaw classes include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often resulting from insufficient input validation and hardcoded credentials in legacy projects. While PHPGurukul itself is not typically the direct target of sophisticated attacks, the widespread distribution of its unpatched materials creates a substantial attack surface for downstream users. The high volume of CVEs reflects systemic neglect in code review processes rather than a single major breach, highlighting the risks inherent in distributing unvetted software assets to novice developers.

CVE IDTitleCVSSSeverityPublished
CVE-2025-10402 PHPGurukul Beauty Parlour Management System readenq.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-09-14
CVE-2025-40696 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-79 5.4AIMediumAI2025-09-11
CVE-2025-40695 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-79 5.4AIMediumAI2025-09-11
CVE-2025-40694 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-79 5.4AIMediumAI2025-09-11
CVE-2025-40693 Cross Site Scripting in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-79 5.4AIMediumAI2025-09-11
CVE-2025-40692 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-89 9.8AICriticalAI2025-09-11
CVE-2025-40691 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-89 9.8AICriticalAI2025-09-11
CVE-2025-40690 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-89 9.8AICriticalAI2025-09-11
CVE-2025-40689 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-89 9.8AICriticalAI2025-09-11
CVE-2025-40687 SQL injection in PHPGurukul Online Fire Reporting System — Online Fire Reporting SystemCWE-89 9.8AICriticalAI2025-09-11
CVE-2025-10114 PHPGurukul Small CRM profile.php sql injection — Small CRMCWE-89 7.3 High2025-09-09
CVE-2025-10098 PHPGurukul User Management System edit-user-profile.php sql injection — User Management SystemCWE-89 6.3 Medium2025-09-08
CVE-2025-10079 PHPGurukul Small CRM get-quote.php sql injection — Small CRMCWE-89 7.3 High2025-09-08
CVE-2025-10025 PHPGurukul Online Course Registration semester.php sql injection — Online Course RegistrationCWE-89 7.3 High2025-09-05
CVE-2025-9933 PHPGurukul Beauty Parlour Management System view-appointment.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-09-03
CVE-2025-9932 PHPGurukul Beauty Parlour Management System update-image.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-09-03
CVE-2025-9834 PHPGurukul Small CRM registration.php cross site scripting — Small CRMCWE-79 3.5 Low2025-09-02
CVE-2025-9831 PHPGurukul Beauty Parlour Management System edit-services.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-09-02
CVE-2025-9830 PHPGurukul Beauty Parlour Management System add-customer-services.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-09-02
CVE-2025-9829 PHPGurukul Beauty Parlour Management System signup.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-09-02
CVE-2025-9814 PHPGurukul Beauty Parlour Management System contact-us.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-09-02
CVE-2025-9756 PHPGurukul User Management System change-emailid.php sql injection — User Management SystemCWE-89 6.3 Medium2025-09-01
CVE-2025-9729 PHPGurukul Online Course Registration student-registration.php sql injection — Online Course RegistrationCWE-89 7.3 High2025-08-31
CVE-2025-9656 PHPGurukul Directory Management System add-directory.php cross site scripting — Directory Management SystemCWE-79 4.3 Medium2025-08-29
CVE-2025-9307 PHPGurukul Online Course Registration session.php sql injection — Online Course RegistrationCWE-89 7.3 High2025-08-21
CVE-2025-9302 PHPGurukul User Management System signup.php sql injection — User Management SystemCWE-89 7.3 High2025-08-21
CVE-2025-9024 PHPGurukul Beauty Parlour Management System book-appointment.php sql injection — Beauty Parlour Management SystemCWE-89 7.3 High2025-08-15
CVE-2025-9017 PHPGurukul Zoo Management System add-foreigner-ticket.php cross site scripting — Zoo Management SystemCWE-79 4.3 Medium2025-08-15
CVE-2025-9013 PHPGurukul Online Shopping Portal Project password-recovery.php sql injection — Online Shopping Portal ProjectCWE-89 7.3 High2025-08-15
CVE-2025-9012 PHPGurukul Online Shopping Portal Project bill-ship-addresses.php sql injection — Online Shopping Portal ProjectCWE-89 7.3 High2025-08-15

This page lists every published CVE security advisory associated with PHPGurukul. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.