CVE-2026-5837 | PHPGurukul News Portal Project 4.1 /news-details.php Comment sql injection (EUVD-2026-20836)
A vulnerability was found in PHPGurukul News Portal Project 4.1. It has been declared as critical. This affects an unknown part of the file /news-details.php. The manipulation of the argument Comment results in sql injection.
This vulnerability is reported as CVE-2026-5837. The attack can be launched remotely. Moreover, an exploit is present.