CVE-2026-5840
MEDIUM
NVD
CVSS Score
4.7
Severity
MEDIUM
Published
Apr 09, 2026
Vendor
unknown
Description
A security flaw has been discovered in PHPGurukul News Portal Project 4.1. Impacted is an unknown function of the file /admin/check_availability.php. Performing a manipulation of the argument Username results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.