Feed/CVE-2025-65647
CVE-2025-65647MEDIUMCVSS 4.3

CVE-2025-65647

Published Nov 25, 2025·Updated Jun 17, 2026

NVD Description

Insecure Direct Object Reference (IDOR) in the Track order function in PHPGURUKUL Online Shopping Portal 2.1 allows information disclosure via the oid parameter.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free