CVE-2026-5636Disclosure

LOWCVSS 2.1 · LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A weakness has been identified in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /cancelorder.php of the component Parameter Handler. This manipulation of the argument oid causes sql injection. The attack may be initiated remotely. The exploit has been made available to the public and could be used for attacks.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-74CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-04-06: 204-06
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-5636 A weakness has been identified in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /cancelorder.php of the component Parameter Ha… https://www.cve.org/CVERecord?id=CVE-2026-5636 ----- Traducción: CVE-2026-5636 Se … http://infoflow.cloud`

    Post summary

    The post merely announces the CVE–2026-5636 entry and includes a link to the CVE record, without providing details on exploitation, patches, or technical specifics.

    0000030
    67 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-5636 A weakness has been identified in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /cancelorder.php of the component Parameter Ha… https://www.cve.org/CVERecord?id=CVE-2026-5636

    Post summary

    A vulnerability has been reported in the /cancelorder.php file of PHPGurukul Online Shopping Portal Project 2.1, but no further exploitation or mitigation details are provided.

    00000182
    57.0K followersView on X

Explore more