A vulnerability identified as critical has been detected in SourceCodester Online Reviewer System 1.0. This impacts an unknown function of the file /system/system/admins/assessments/examproper/questions-view.php. Performing a manipulation results in sql injection.

This vulnerability is known as CVE-2026-36920. Remote exploitation of the attack is possible. No exploit is available.