A vulnerability marked as critical has been reported in SourceCodester Online Thesis Archiving System 1.0. Affected by this issue is some unknown functionality of the file /otas/projects_per_department.php. This manipulation causes sql injection.

This vulnerability appears as CVE-2026-36950. The attack may be initiated remotely. There is no available exploit.