A vulnerability described as critical has been identified in CodeAstro Student Attendance Management System 1.0. The impacted element is an unknown function of the file /attendance-php/index.php. Executing a manipulation of the argument Username can lead to sql injection.
This vulnerability appears as CVE-2026-11582. The attack may be performed from remote. In addition, an exploit is available.