CVE-2025-61255: Phpgurukul Bank Locker Management System

Medium severity, CVSS 6.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Bank Locker Management System by PHPGurukul is affected by a Cross-Site Scripting (XSS) vulnerability via the /search parameter, where unsanitized input allows arbitrary HTML and JavaScript injection, potentially resulting in information disclosure and user redirection.

Affected products

  • Phpgurukul Bank Locker Management System: affected versions not specified

Published 2025-10-21. Last modified 2026-06-17.