Vulnerability index

Browse CVEs

985 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2025-63955 A Cross-Site Request Forgery (CSRF) vulnerability in the manage-students.php component of PHPGurukul Student Record System v3.2 allows an attacker to… Student Record System No fix yet Fix from $1,9502025-11-18 CRITICAL 9.8 CVE-2024-44659 PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the email parameter in forgot-password.php. Online Shopping Portal Mitigation only Fix from $2,3002025-11-17 MEDIUM 6.5 CVE-2024-44664 PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the name, summary, review, quality, price, and value parameters in product-d… Online Shopping Portal No fix yet Fix from $1,6002025-11-17 MEDIUM 5.4 CVE-2024-44661 PHPGurukul Online Shopping Portal 2.0 is vulnerable to Cross Site Scripting (XSS) via the quantity parameter in my-cart.php. Online Shopping Portal No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44660 PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the fullname, emailid, and contactno parameters in login.php. Online Shopping Portal No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44662 PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the username parameter in the admin page. Online Shopping Portal No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44663 PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the product parameter in search-result.php. Online Shopping Portal No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44654 PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the email and mobileno parameters in reset-password.php. Complaint Management System No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44658 PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the subcategory and category parameters in subcategory.php. Complaint Management System No fix yet Fix from $1,6002025-11-17 MEDIUM 6.1 CVE-2024-44655 PHPGurukul Complaint Management System 2.0 is vulnerable to Cross Site Scripting (XSS) via the search parameter in user-search.php. Complaint Management System No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44657 PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the fromdate and todate parameters in between-date-userreport.php. Complaint Management System No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44648 PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via id and adminremark parameters in quote-details.php. Small Crm No fix yet Fix from $1,6002025-11-17 MEDIUM 6.1 CVE-2024-44647 PHPGurukul Small CRM 3.0 is vulnerable to Cross Site Scripting (XSS) via the aremark parameter in manage-tickets.php. Small Crm No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44641 PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the oldpass parameter in change-password.php. Small Crm No fix yet Fix from $1,6002025-11-17 MEDIUM 6.5 CVE-2024-44644 PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the frm_id and aremark parameters in manage-tickets.php. Small Crm No fix yet Fix from $1,6002025-11-17 CRITICAL 9.8 CVE-2025-13247 A security flaw has been discovered in PHPGurukul Tourism Management System 1.0. The affected element is an unknown function of the file /admin/user-… Tourism Management System Mitigation only Fix from $2,3002025-11-16 MEDIUM 6.5 CVE-2024-44636 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the adminname and aemailid parameters in /admin-profile.php. Student Record System Mitigation only Fix from $1,6002025-11-14 MEDIUM 6.5 CVE-2024-44639 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the sub1, sub2, sub3, sub4, and course-short parameters in add-subject.php. Student Record System No fix yet Fix from $1,6002025-11-14 MEDIUM 6.5 CVE-2024-44640 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the course-short, course-full, and cdate parameters in add-course.php. Student Record System No fix yet Fix from $1,6002025-11-14 MEDIUM 6.5 CVE-2024-55016 PHPGurukul Student Record Management System 3.20 is vulnerable to SQL Injection via the id and password parameters in login.php. Student Record System No fix yet Fix from $1,6002025-11-14 MEDIUM 6.5 CVE-2024-44630 Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These include: c-full, fname, mname,lna… Student Record System No fix yet Fix from $1,6002025-11-14 MEDIUM 6.5 CVE-2024-44632 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the id and emailid parameters in password-recovery.php. Student Record System No fix yet Fix from $1,6002025-11-14 MEDIUM 6.5 CVE-2024-44633 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the currentpassword parameter in change-password.php. Student Record System No fix yet Fix from $1,6002025-11-14 MEDIUM 6.1 CVE-2024-44635 PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS) via adminname and aemailid parameters in /admin-profile.php. Student Record System No fix yet Fix from $1,6002025-11-14 MEDIUM 5.4 CVE-2025-50363 Phpgurukul Maid Hiring Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in /maid-hiring.php va the name field. Maid Hiring Management System No fix yet Fix from $1,6002025-11-03 HIGH 8.1 CVE-2025-12615 A security vulnerability has been detected in PHPGurukul News Portal 1.0. The affected element is an unknown function of the file /onps/settings.py. … News Portal No fix yet Fix from $1,9502025-11-03 MEDIUM 5.9 CVE-2025-12616 A vulnerability was detected in PHPGurukul News Portal 1.0. The impacted element is an unknown function of the file /onps/settings.py. Performing a m… News Portal No fix yet Fix from $1,6002025-11-03 MEDIUM 6.1 CVE-2025-61255 Bank Locker Management System by PHPGurukul is affected by a Cross-Site Scripting (XSS) vulnerability via the /search parameter, where unsanitized in… Bank Locker Management System Mitigation only Fix from $1,6002025-10-21 CRITICAL 9.8 CVE-2025-11506 A security flaw has been discovered in PHPGurukul Beauty Parlour Management System 1.1. The affected element is an unknown function of the file /admi… Beauty Parlour Management System Mitigation only Fix from $2,3002025-10-08 CRITICAL 9.8 CVE-2025-11507 A weakness has been identified in PHPGurukul Beauty Parlour Management System 1.1. The impacted element is an unknown function of the file /admin/sea… Beauty Parlour Management System Mitigation only Fix from $2,3002025-10-08