CVE List

CVE-2025-50487

Critical 7.1

Improper session invalidation in the component /bbdms/change-password.php of PHPGurukul Blood Bank & Donor Management System v2.4 allows attackers to execute a session hijacking attack.

Published July 28, 2025.

Affected software

Get alerts for Phpgurukul Blood Bank \& Donor Management System

Reference links