A vulnerability classified as critical was found in code-projects Simple Laundry System 1.0. This vulnerability affects unknown code of the file /modifymember.php of the component Parameter Handler. Such manipulation of the argument firstName leads to sql injection.

This vulnerability is uniquely identified as CVE-2026-5540. The attack can be launched remotely. Moreover, an exploit is present.