A vulnerability, which was classified as critical, was found in deepakmisal24 Chemical Inventory Management System up to 1.0. Affected by this vulnerability is an unknown functionality of the file /inventory_form.php. Such manipulation of the argument chem_name leads to sql injection.
This vulnerability is listed as CVE-2025-9758. The attack may be performed from remote. In addition, an exploit is available.