A vulnerability categorized as critical has been discovered in code-projects Patient Record Management System 1.0. The affected element is an unknown function of the file /hematology_print.php. Executing a manipulation of the argument hem_id can lead to sql injection.
This vulnerability is registered as CVE-2026-6005. It is possible to launch the attack remotely. Furthermore, an exploit is available.