CVE-2025-7834Cross-Site Request Forgery in Complaint Management System

Severity
5.3MEDIUMNVD
EPSS
0.1%
top 75.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 19

Description

A vulnerability, which was classified as problematic, was found in PHPGurukul Complaint Management System 2.0. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-hqqj-w93q-qh72: A vulnerability, which was classified as problematic, was found in PHPGurukul Complaint Management System 22025-07-19
CVEList
PHPGurukul Complaint Management System cross-site request forgery2025-07-19
CVE-2025-7834 — Cross-Site Request Forgery | cvebase