A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0 . It has been classified as critical . Impacted is an unknown function of the file /edit_class.php . This manipulation of the argument ID causes sql injection. This vulnerability appears as CVE-2026-13526 . The attack may be initiated remotely. In addition, an exploit is available.