CVE-2026-90840: Phpgurukul Blood Donor Management System

High severity, CVSS 7.3. EPSS: 0.7% chance of exploitation in the next 30 days.

A vulnerability was identified in PHPGurukul Blood Donor Management System 1.0. Affected is the function __construct of the file /application/controllers/admin/Dashboard.php of the component Admin Controllers. The manipulation leads to improper authentication. The attack can be initiated remotely. The exploit is publicly available and might be used.

Affected products

  • Phpgurukul Blood Donor Management System: version 1.0 only

Published 2026-09-15. Last modified 2026-09-15.