CVE-2026-90841 | PHPGurukul Blood Donor Management System 1.0 Report Endpoint Report.php fromdate/todate sql injection
A vulnerability labeled as critical has been found in PHPGurukul Blood Donor Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /application/controllers/admin/Report.php of the component Report Endpoint. The manipulation of the argument fromdate/todate results in sql injection.
This vulnerability is reported as CVE-2026-90841. The attack can be launched remotely. Moreover, an exploit is present.VulDB Recent EntriesRead More