CVE-2025-3096: Sourcecodester Clinic's Patient Management System

Critical severity, CVSS 9.3. EPSS: 1.5% chance of exploitation in the next 30 days.

Clinic’s Patient Management System versions 2.0 suffers from a SQL injection vulnerability in the login page.

Affected products

Published 2025-04-01. Last modified 2026-06-17.