Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2025-6608 SourceCodester Best Salon Management System edit-services.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-25
CVE-2025-6607 SourceCodester Best Salon Management System stock.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-25
CVE-2025-6606 SourceCodester Best Salon Management System add-services.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-25
CVE-2025-6605 SourceCodester Best Salon Management System edit-staff.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-25
CVE-2025-6604 SourceCodester Best Salon Management System add-staff.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-25
CVE-2025-6583 SourceCodester Best Salon Management System view-appointment.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-25
CVE-2025-6582 SourceCodester Best Salon Management System edit-customer-detailed.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-24
CVE-2025-6581 SourceCodester Best Salon Management System add-customer.php sql injection — Best Salon Management System CWE-89 6.3 Medium 2025-06-24
CVE-2025-6580 SourceCodester Best Salon Management System Login sql injection — Best Salon Management System CWE-89 7.3 High 2025-06-24
CVE-2025-6477 SourceCodester Student Result Management System System Settings Page system cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-22
CVE-2025-6476 SourceCodester Gym Management System cross-site request forgery — Gym Management System CWE-352 4.3 Medium 2025-06-22
CVE-2025-6475 SourceCodester Student Result Management System Manage Students Module manage_students cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-22
CVE-2025-6355 SourceCodester Online Hotel Reservation System execeditroom.php sql injection — Online Hotel Reservation System CWE-89 7.3 High 2025-06-20
CVE-2025-6346 SourceCodester Advance Charity Management System fundDetails.php sql injection — Advance Charity Management System CWE-89 6.3 Medium 2025-06-20
CVE-2025-6345 SourceCodester My Food Recipe Add Recipe Page add-recipe.php addRecipeModal cross site scripting — My Food Recipe CWE-79 3.5 Low 2025-06-20
CVE-2025-6161 SourceCodester Simple Food Ordering System editproduct.php unrestricted upload — Simple Food Ordering System CWE-434 7.3 High 2025-06-17
CVE-2025-6160 SourceCodester Client Database Management System user_customer_create_order.php sql injection — Client Database Management System CWE-89 7.3 High 2025-06-17
CVE-2025-5984 SourceCodester Online Student Clearance System add-fee.php cross site scripting — Online Student Clearance System CWE-79 3.5 Low 2025-06-10
CVE-2025-5840 SourceCodester Client Database Management System user_update_customer_order.php unrestricted upload — Client Database Management System CWE-434 7.3 High 2025-06-07
CVE-2025-5758 SourceCodester Open Source Clinic Management System doctor.php sql injection — Open Source Clinic Management System CWE-89 7.3 High 2025-06-06
CVE-2025-5755 SourceCodester Open Source Clinic Management System email_config.php sql injection — Open Source Clinic Management System CWE-89 7.3 High 2025-06-06
CVE-2025-5728 SourceCodester Open Source Clinic Management System manage_website.php unrestricted upload — Open Source Clinic Management System CWE-434 6.3 Medium 2025-06-06
CVE-2025-5727 SourceCodester Student Result Management System Announcement Page announcement cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-06
CVE-2025-5726 SourceCodester Student Result Management System Division System Page division-system cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-06
CVE-2025-5725 SourceCodester Student Result Management System Grading System Page grading-system cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-06
CVE-2025-5724 SourceCodester Student Result Management System Subjects Page subjects cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-06
CVE-2025-5723 SourceCodester Student Result Management System Classes Page classes cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-06
CVE-2025-5722 SourceCodester Student Result Management System Add Academic Term terms cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-06
CVE-2025-5721 SourceCodester Student Result Management System Profile Setting Page update_profile cross site scripting — Student Result Management System CWE-79 2.4 Low 2025-06-06
CVE-2025-5716 SourceCodester Open Source Clinic Management System login.php sql injection — Open Source Clinic Management System CWE-89 7.3 High 2025-06-06

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.