A vulnerability marked as critical has been reported in code-projects Student Result Manager 1.0. This affects an unknown function of the file src/students/Database.java. This manipulation of the argument roll/name/gpa causes sql injection.
The identification of this vulnerability is CVE-2025-11551. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.