CVE-2026-94048 | CodeAstro QR Code Attendance Management System 1.0 UserController.php save role_id privileges management

SecurityVulns

A vulnerability, which was classified as critical, was found in CodeAstro QR Code Attendance Management System 1.0. This affects the function Save of the file app/Controllers/UserController.php. The manipulation of the argument role_id results in improper privilege management.

This vulnerability is identified as CVE-2026-94048. The attack can be executed remotely. Additionally, an exploit exists.VulDB Recent EntriesRead More