A vulnerability categorized as critical has been discovered in SourceCodester Human Resource Management 1.0. Affected by this vulnerability is an unknown functionality of the file /detailview.php of the component Employee View Page. Such manipulation of the argument employeeid leads to improper control of resource identifiers.

This vulnerability is listed as CVE-2026-10624. The attack may be performed from remote. In addition, an exploit is available.