CVE-2025-50486
e-diary management system
Improper session invalidation in the component /carrental/update-password.php of PHPGurukul Car Rental Project v3.0 allows attackers to execute a session hijacking attack.
- CVSS
- 7.1
- EPSS
- 0.32% 24.6% percentile
- CISA KEV
- Not listed
- Published
- 2025.07.29