Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2025-3728 SourceCodester Simple Hotel Booking System login buffer overflow — Simple Hotel Booking System CWE-120 5.3 Medium 2025-04-16
CVE-2025-3697 SourceCodester Web-based Pharmacy Product Management System edit-product.php sql injection — Web-based Pharmacy Product Management System CWE-89 6.3 Medium 2025-04-16
CVE-2025-3696 SourceCodester Web-based Pharmacy Product Management System search_stock. php sql injection — Web-based Pharmacy Product Management System CWE-89 6.3 Medium 2025-04-16
CVE-2025-3694 SourceCodester Web-based Pharmacy Product Management System Login sql injection — Web-based Pharmacy Product Management System CWE-89 7.3 High 2025-04-16
CVE-2025-3692 SourceCodester Online Eyewear Shop Master.php cross site scripting — Online Eyewear Shop CWE-79 2.4 Low 2025-04-16
CVE-2025-3589 SourceCodester Music Class Enrollment System manage_class.php sql injection — Music Class Enrollment System CWE-89 6.3 Medium 2025-04-14
CVE-2025-3383 SourceCodester Web-based Pharmacy Product Management System search_sales.php sql injection — Web-based Pharmacy Product Management System CWE-89 7.3 High 2025-04-07
CVE-2025-3315 SourceCodester Apartment Visitor Management System view-report.php sql injection — Apartment Visitor Management System CWE-89 7.3 High 2025-04-06
CVE-2025-3314 SourceCodester Apartment Visitor Management System forgotpw.php sql injection — Apartment Visitor Management System CWE-89 7.3 High 2025-04-06
CVE-2025-3298 SourceCodester Online Eyewear Shop Registration Master.php access control — Online Eyewear Shop CWE-284 4.3 Medium 2025-04-05
CVE-2025-3297 SourceCodester Online Eyewear Shop Master.php cross site scripting — Online Eyewear Shop CWE-79 3.5 Low 2025-04-05
CVE-2025-3296 SourceCodester Online Eyewear Shop Users.php sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2025-04-05
CVE-2025-3244 SourceCodester Web-based Pharmacy Product Management System Create User Page add-admin.php unrestricted upload — Web-based Pharmacy Product Management System CWE-434 6.3 Medium 2025-04-04
CVE-2025-3151 SourceCodester Gym Management System signup.php sql injection — Gym Management System CWE-89 7.3 High 2025-04-03
CVE-2025-3143 SourceCodester Apartment Visitor Management System visitor-entry.php sql injection — Apartment Visitor Management System CWE-89 6.3 Medium 2025-04-03
CVE-2025-3142 SourceCodester Apartment Visitor Management System add-apartment.php sql injection — Apartment Visitor Management System CWE-89 6.3 Medium 2025-04-03
CVE-2025-3141 SourceCodester Online Medicine Ordering System manage_category.php sql injection — Online Medicine Ordering System CWE-89 6.3 Medium 2025-04-03
CVE-2025-3140 SourceCodester Online Medicine Ordering System view_category.php sql injection — Online Medicine Ordering System CWE-89 6.3 Medium 2025-04-03
CVE-2025-3120 SourceCodester Apartment Visitors Management System add-apartment.php sql injection — Apartment Visitors Management System CWE-89 6.3 Medium 2025-04-02
CVE-2025-3119 SourceCodester Online Tutor Portal manage_course.php sql injection — Online Tutor Portal CWE-89 6.3 Medium 2025-04-02
CVE-2025-3118 SourceCodester Online Tutor Portal view_course.php sql injection — Online Tutor Portal CWE-89 6.3 Medium 2025-04-02
CVE-2025-3096 Clinics Patient Management System SQL Injection — Clinic's Patient Management System CWE-89 9.8AI Critical AI 2025-04-01
CVE-2025-3018 SourceCodester Online Eyewear Shop Users.php sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2025-03-31
CVE-2025-2852 SourceCodester Food Ordering Management System view_menu.php sql injection — Food Ordering Management System CWE-89 4.7 Medium 2025-03-27
CVE-2025-2846 SourceCodester Online Eyewear Shop Registration Users.php registration sql injection — Online Eyewear Shop CWE-89 7.3 High 2025-03-27
CVE-2025-2655 SourceCodester AC Repair and Services System Users.php delete_users sql injection — AC Repair and Services System CWE-89 7.3 High 2025-03-23
CVE-2025-2654 SourceCodester AC Repair and Services System manage_service.php sql injection — AC Repair and Services System CWE-89 7.3 High 2025-03-23
CVE-2025-2652 SourceCodester Employee and Visitor Gate Pass Logging System exposure of information through directory listing — Employee and Visitor Gate Pass Logging System CWE-548 5.3 Medium 2025-03-23
CVE-2025-2651 SourceCodester Online Eyewear Shop admin exposure of information through directory listing — Online Eyewear Shop CWE-548 5.3 Medium 2025-03-23
CVE-2025-2626 SourceCodester Kortex Lite Advocate Office Management System edit_case.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2025-03-22

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.