A vulnerability marked as critical has been reported in SourceCodester/jkev Record Management System 1.0. Affected by this issue is some unknown functionality of the file save_emp.php of the component Add Employee Page. This manipulation causes unrestricted upload.
This vulnerability is registered as CVE-2026-5576. Remote exploitation of the attack is possible. Furthermore, an exploit is available.