Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.9

PHPGurukul Online Course Registration 3.1 allows remote SQL injection attacks

CVE-2026-5814
Summary

The PHPGurukul Online Course Registration 3.1 system has a security flaw that lets attackers access sensitive data by manipulating certain inputs. This can be done from anywhere on the internet, and a public exploit is now available. You should update the system to the latest version to protect your data.

Original title
A security vulnerability has been detected in PHPGurukul Online Course Registration 3.1. This issue affects some unknown processing of the file /admin/check_availability.php. The manipulation of th...
Original description
A security vulnerability has been detected in PHPGurukul Online Course Registration 3.1. This issue affects some unknown processing of the file /admin/check_availability.php. The manipulation of the argument regno leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used.
nvd CVSS2.0 7.5
nvd CVSS3.1 7.3
nvd CVSS4.0 6.9
Vulnerability type
CWE-74 Injection
CWE-89 SQL Injection
Published: 9 Apr 2026 · Updated: 9 Apr 2026 · First seen: 9 Apr 2026