CVE-2025-70149: Codeastro Membership Management System

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID parameter.

Affected products

  • Codeastro Membership Management System: version 1.0 only

Published 2026-02-18. Last modified 2026-09-08.