CVE-2026-5560Disclosure

LOWCVSS 2.1 · LOW

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was found in PHPGurukul Online Shopping Portal Project 2.1. The impacted element is an unknown function of the file /payment-method.php of the component Parameter Handler. Performing a manipulation of the argument paymethod results in sql injection. It is possible to initiate the attack remotely. The exploit has been made public and could be used.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-04-05: 3Technical Details · 2026-04-05: 104-05
Signal classification2 categories
Disclosure
266.7%
General
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-5560 A vulnerability was found in PHPGurukul Online Shopping Portal Project 2.1. The impacted element is an unknown function of the file /payment-method.php of the component… https://www.cve.org/CVERecord?id=CVE-2026-5560

    Post summary

    The text announces CVE-2026-5560 as affecting PHPGurukul Online Shopping Portal Project 2.1, with no additional exploit, patch, or technical detail information.

    00010324
    56.8K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    General

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-5560 - PHPGurukul Online Shopping Portal Project Parameter payment-method.php sql injection Intel Report: https://ift.tt/ZaHhYVw

    Post summary

    The alert identifies CVE-2026-5560 as a SQL injection flaw in PHPGurukul’s payment-method.php and points to an Intel Report for further details.

    0000046
    281 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-5560 A vulnerability was found in PHPGurukul Online Shopping Portal Project 2.1. The impacted element is an unknown function of the file /payment-method.php of the component… https://www.cve.org/CVERecord?id=CVE-2026-5560 ----- Traducción: CVE-2026-5560 Se … http://infoflow.cloud`

    Post summary

    A CVE (2026‑5560) has been identified in the PHPGurukul Online Shopping Portal Project 2.1, affecting an unknown function in payment‑method.php, with no PoC, active exploitation, patch, or detailed technical information provided.

    0000036
    63 followersView on X

Explore more