Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2025-9790 SourceCodester Hotel Reservation System updateabout.php sql injection — Hotel Reservation System CWE-89 7.3 High 2025-09-01
CVE-2025-9789 SourceCodester Online Hotel Reservation System edituser.php sql injection — Online Hotel Reservation System CWE-89 7.3 High 2025-09-01
CVE-2025-9788 SourceCodester/Campcodes School Log Management System admin_class.php sql injection — School Log Management System CWE-89 7.3 High 2025-09-01
CVE-2025-9771 SourceCodester Eye Clinic Management System search_index_Diagnosis.php sql injection — Eye Clinic Management System CWE-89 7.3 High 2025-09-01
CVE-2025-9706 SourceCodester Water Billing System edit.php sql injection — Water Billing System CWE-89 7.3 High 2025-08-30
CVE-2025-9705 SourceCodester Water Billing System paybill.php sql injection — Water Billing System CWE-89 7.3 High 2025-08-30
CVE-2025-9704 SourceCodester Water Billing System viewbill.php sql injection — Water Billing System CWE-89 7.3 High 2025-08-30
CVE-2025-9702 SourceCodester Simple Cafe Billing System sales_report.php sql injection — Simple Cafe Billing System CWE-89 7.3 High 2025-08-30
CVE-2025-9701 SourceCodester Simple Cafe Billing System receipt.php sql injection — Simple Cafe Billing System CWE-89 7.3 High 2025-08-30
CVE-2025-9700 SourceCodester Online Book Store publisher_list.php sql injection — Online Book Store CWE-89 7.3 High 2025-08-30
CVE-2025-9699 SourceCodester Online Polling System Code checklogin.php sql injection — Online Polling System Code CWE-89 7.3 High 2025-08-30
CVE-2025-9690 SourceCodester Advanced School Management System vendordetails sql injection — Advanced School Management System CWE-89 6.3 Medium 2025-08-30
CVE-2025-9689 SourceCodester Advanced School Management System item_select sql injection — Advanced School Management System CWE-89 6.3 Medium 2025-08-30
CVE-2025-9660 SourceCodester Bakeshop Online Ordering System passwordrecover.php sql injection — Bakeshop Online Ordering System CWE-89 7.3 High 2025-08-29
CVE-2025-9476 SourceCodester Human Resource Information System editemployee_process.php unrestricted upload — Human Resource Information System CWE-434 7.3 High 2025-08-26
CVE-2025-9475 SourceCodester Human Resource Information System editemployee_process.php unrestricted upload — Human Resource Information System CWE-434 7.3 High 2025-08-26
CVE-2025-9473 SourceCodester Online Bank Management System feedback.php sql injection — Online Bank Management System CWE-89 7.3 High 2025-08-26
CVE-2025-9306 SourceCodester Advanced School Management System addNotice cross site scripting — Advanced School Management System CWE-79 3.5 Low 2025-08-21
CVE-2025-9305 SourceCodester Online Bank Management System mnotice.php sql injection — Online Bank Management System CWE-89 7.3 High 2025-08-21
CVE-2025-9304 SourceCodester Online Bank Management System show.php sql injection — Online Bank Management System CWE-89 7.3 High 2025-08-21
CVE-2025-9022 SourceCodester Online Bank Management System statements.php sql injection — Online Bank Management System CWE-89 7.3 High 2025-08-15
CVE-2025-9021 SourceCodester Online Bank Management System transfer.php sql injection — Online Bank Management System CWE-89 7.3 High 2025-08-15
CVE-2025-8989 SourceCodester COVID 19 Testing Management System edit-phlebotomist.php sql injection — COVID 19 Testing Management System CWE-89 7.3 High 2025-08-14
CVE-2025-8988 SourceCodester COVID 19 Testing Management System bwdates-report-result.php sql injection — COVID 19 Testing Management System CWE-89 7.3 High 2025-08-14
CVE-2025-8987 SourceCodester COVID 19 Testing Management System test-details.php sql injection — COVID 19 Testing Management System CWE-89 7.3 High 2025-08-14
CVE-2025-8986 SourceCodester COVID 19 Testing Management System search-report-result.php sql injection — COVID 19 Testing Management System CWE-89 7.3 High 2025-08-14
CVE-2025-8985 SourceCodester COVID 19 Testing Management System profile.php sql injection — COVID 19 Testing Management System CWE-89 7.3 High 2025-08-14
CVE-2025-8973 SourceCodester Cashier Queuing System Actions.php sql injection — Cashier Queuing System CWE-89 7.3 High 2025-08-14
CVE-2025-8953 SourceCodester COVID 19 Testing Management System check_availability.php sql injection — COVID 19 Testing Management System CWE-89 7.3 High 2025-08-14
CVE-2025-8926 SourceCodester COVID 19 Testing Management System login.php sql injection — COVID 19 Testing Management System CWE-89 7.3 High 2025-08-13

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.