A vulnerability identified as critical has been detected in code-projects Human Resource Integrated System 1.0. This impacts an unknown function of the file /login_timeee.php. Performing manipulation of the argument emp_id results in sql injection.

This vulnerability was named CVE-2025-9733. The attack may be initiated remotely. In addition, an exploit is available.