CVE-2025-9689
30.08.2025, 13:15
A vulnerability was detected in SourceCodester Advanced School Management System 1.0. The impacted element is an unknown function of the file /index.php/stock/item_select. The manipulation of the argument q results in sql injection. It is possible to launch the attack remotely. The exploit is now public and may be used.
Awaiting analysis
This vulnerability is currently awaiting analysis.