CVE-2024-55271

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
17/02/2026
Last modified:
23/02/2026

Description

A Cross-Site Request Forgery (CSRF) vulnerability has been identified in phpgurukul Gym Management System 1.0. This issue is present in the profile update functionality of the User Panel, specifically the /profile.php endpoint.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:phpgurukul:gym_management_system:1.0:*:*:*:*:*:*:*