A vulnerability categorized as critical has been discovered in SourceCodester Gas Agency Management System 1.0. This issue affects some unknown processing of the file /gasmark/php_action/createUser.php. Executing a manipulation can lead to improper access controls.

This vulnerability is registered as CVE-2026-2009. It is possible to launch the attack remotely. Furthermore, an exploit is available.