phpgurukul Hospital Management System 4.0 is vulnerable to SQL Injection in index.php via the username parameter.
https://github.com/hptcybersecurity/CVE/blob/main/CVE-2025-56214.md
https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-25792
https://doc.clickup.com/3897127/p/h/3pxt7-11996/43458c7f19aa2e0