A vulnerability was found in SourceCodester Loan Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/delete_group.php. The manipulation of the argument ID leads to sql injection.
This vulnerability is referenced as CVE-2025-69948. Remote exploitation of the attack is possible. No exploit is available.