CVE-2026-90844

Summary

A vulnerability was detected in PHPGurukul Daily Expense Tracker System 1.1. This vulnerability affects unknown code of the file /dets/index.php of the component Login. Performing a manipulation of the argument email results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.

Affected Software

VendorProductVersion RangeStatus
PHPGurukulDaily Expense Tracker System1.1affected

Weaknesses

  • CWE-89: SQL Injection
  • CWE-74: Injection

References