Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2025-2606 SourceCodester Best Church Management Software soulwinning_crud.php unrestricted upload — Best Church Management Software CWE-434 6.3 Medium 2025-03-21
CVE-2025-2604 SourceCodester Kortex Lite Advocate Office Management System edit_act.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2025-03-21
CVE-2025-2603 SourceCodester Kortex Lite Advocate Office Management System deactivate.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2025-03-21
CVE-2025-2602 SourceCodester Kortex Lite Advocate Office Management System deactivate_reg.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2025-03-21
CVE-2025-2601 SourceCodester Kortex Lite Advocate Office Management System activate_reg.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2025-03-21
CVE-2025-2387 SourceCodester Online Food Ordering System ajax.php sql injection — Online Food Ordering System CWE-89 7.3 High 2025-03-17
CVE-2025-2377 SourceCodester Vehicle Management System confirmbooking.php cross site scripting — Vehicle Management System CWE-79 3.5 Low 2025-03-17
CVE-2025-2046 SourceCodester Best Employee Management System print1.php sql injection — Best Employee Management System CWE-89 6.3 Medium 2025-03-06
CVE-2025-1961 SourceCodester Best Church Management Software web_crud.php sql injection — Best Church Management Software CWE-89 6.3 Medium 2025-03-04
CVE-2025-1905 SourceCodester Employee Management System employee.php cross site scripting — Employee Management System CWE-79 3.5 Low 2025-03-04
CVE-2025-1607 SourceCodester Best Employee Management System salary_slip.php authorization — Best Employee Management System CWE-639 4.3 Medium 2025-02-24
CVE-2025-1606 SourceCodester Best Employee Management System backups.php information disclosure — Best Employee Management System CWE-200 4.3 Medium 2025-02-24
CVE-2025-1599 SourceCodester Best Church Management Software profile_crud.php path traversal — Best Church Management Software CWE-24 5.4 Medium 2025-02-24
CVE-2025-1598 SourceCodester Best Church Management Software asset_crud.php unrestricted upload — Best Church Management Software CWE-434 6.3 Medium 2025-02-23
CVE-2025-1597 SourceCodester Best Church Management Software redirect.php cross site scripting — Best Church Management Software CWE-79 3.5 Low 2025-02-23
CVE-2025-1596 SourceCodester Best Church Management Software fpassword.php sql injection — Best Church Management Software CWE-89 7.3 High 2025-02-23
CVE-2025-1593 SourceCodester Best Employee Management System Profile Picture unrestricted upload — Best Employee Management System CWE-434 4.7 Medium 2025-02-23
CVE-2025-1592 SourceCodester Best Employee Management System Add Role Page Role.php cross site scripting — Best Employee Management System CWE-79 2.4 Low 2025-02-23
CVE-2025-1591 SourceCodester Employee Management System Department Page department.php cross site scripting — Employee Management System CWE-79 2.4 Low 2025-02-23
CVE-2025-1590 SourceCodester E-Learning System List of Lessons Page index.php unrestricted upload — E-Learning System CWE-434 4.7 Medium 2025-02-23
CVE-2025-1589 SourceCodester E-Learning System User Registration register.php cross site scripting — E-Learning System CWE-79 4.3 Medium 2025-02-23
CVE-2025-1587 SourceCodester Telecom Billing Management System Add New Record main.cpp addrecords buffer overflow — Telecom Billing Management System CWE-120 5.3 Medium 2025-02-23
CVE-2025-1202 SourceCodester Best Church Management Software edit_slider.php sql injection — Best Church Management Software CWE-89 6.3 Medium 2025-02-12
CVE-2025-1201 SourceCodester Best Church Management Software profile_crud.php sql injection — Best Church Management Software CWE-89 6.3 Medium 2025-02-12
CVE-2025-1200 SourceCodester Best Church Management Software slider_crud.php sql injection — Best Church Management Software CWE-89 6.3 Medium 2025-02-12
CVE-2025-1199 SourceCodester Best Church Management Software role_crud.php sql injection — Best Church Management Software CWE-89 6.3 Medium 2025-02-12
CVE-2025-1192 SourceCodester Multi Restaurant Table Reservation System select-menu.php sql injection — Multi Restaurant Table Reservation System CWE-89 6.3 Medium 2025-02-12
CVE-2025-1191 SourceCodester Multi Restaurant Table Reservation System approve-reject.php sql injection — Multi Restaurant Table Reservation System CWE-89 6.3 Medium 2025-02-12
CVE-2025-1169 SourceCodester Image Compressor Tool compressor.php cross site scripting — Image Compressor Tool CWE-79 3.5 Low 2025-02-11
CVE-2025-1168 SourceCodester Contact Manager with Export to VCF delete-contact.php sql injection — Contact Manager with Export to VCF CWE-89 6.3 Medium 2025-02-11

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.