Online Shopping Portal Project
15 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Online Shopping Portal Project, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
Online Shopping Portal Project CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 1 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 1 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 3 |
| 2025-09 | 0 |
| 2025-10 | 1 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 9 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 15 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- High5
- Medium10
Latest CVEs
The 15 most recently published vulnerabilities affecting Online Shopping Portal Project.
- CVE-2026-5641PHPGurukul Online Shopping Portal Project Parameter update-image1.php sql injection6.3
- CVE-2026-5640PHPGurukul Online Shopping Portal Project Parameter update-image2.php sql injection6.3
- CVE-2026-5639PHPGurukul Online Shopping Portal Project Parameter update-image3.php sql injection6.3
- CVE-2026-5636PHPGurukul Online Shopping Portal Project Parameter cancelorder.php sql injection6.3
- CVE-2026-5635PHPGurukul Online Shopping Portal Project Parameter categorywise-products.php sql injection6.3
- CVE-2026-5606PHPGurukul Online Shopping Portal Project Parameter order-details.php sql injection6.3
- CVE-2026-5583PHPGurukul Online Shopping Portal Project Parameter my-profile.php sql injection6.3
- CVE-2026-5560PHPGurukul Online Shopping Portal Project Parameter payment-method.php sql injection6.3
- CVE-2026-5552PHPGurukul Online Shopping Portal Project Parameter sub-category.php sql injection6.3
- CVE-2025-61096PHPGurukul Online Shopping Portal Project v2.1 is vulnerable to SQL Injection in /shopping/login.php via the fullname parameter.6.5
- CVE-2025-9013PHPGurukul Online Shopping Portal Project password-recovery.php sql injection7.3
- CVE-2025-9012PHPGurukul Online Shopping Portal Project bill-ship-addresses.php sql injection7.3
- CVE-2025-9011PHPGurukul Online Shopping Portal Project signup.php sql injection7.3
- CVE-2025-5367PHPGurukul Online Shopping Portal Project category.php sql injection7.3
- CVE-2025-26156A SQL Injection vulnerability was found in /shopping/track-orders.php in PHPGurukul Online Shopping Portal v2.1, which allows remote attackers to execute arbitrary code via orderid POST request par...8.8
Product grouping is registry-driven, with AI assist and human review. How it works