An SQL Injection vulneraility exists in https://phpgurukul.com Online Shopping Portal 3.1 via the email parameter on the /check_availability.php endpoint that serves as a checker whether a new user's email is already exist within the database.
| Software | From | Fixed in |
|---|---|---|
| phpgurukul / online_shopping_portal | 3.1 | 3.1.x |