CVE-2025-9022 | SourceCodester Online Bank Management System up to 1.0 /bank/statements.php email sql injection
A vulnerability was found in SourceCodester Online Bank Management System up to 1.0 and classified as critical. This affects an unknown function of the file /bank/statements.php. Executing manipulation of the argument email can lead to sql injection.
This vulnerability is handled as CVE-2025-9022. The attack can be executed remotely. Additionally, an exploit exists.