Student Attendance Management System v1 was discovered to contain multiple SQL injection vulnerabilities in createStudents.php via the Id, firstname, and admissionNumber parameters.
https://github.com/rickxy/Student-Attendance-Management-System
https://gist.github.com/celbahraoui/f13884670ac6668ae05b60fd37bb3521