A vulnerability was found in tnomi Attendance Manager Plugin up to 0.6.2 on WordPress. It has been declared as critical. Affected by this vulnerability is an unknown functionality. Executing a manipulation of the argument attmgr_off can lead to sql injection.
This vulnerability is handled as CVE-2026-3781. The attack can be executed remotely. There is not any exploit available.