Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2025-1166 SourceCodester Food Menu Manager update.php unrestricted upload — Food Menu Manager CWE-434 6.3 Medium 2025-02-11
CVE-2025-1160 SourceCodester Employee Management System index.php default credentials — Employee Management System CWE-1392 7.3 High 2025-02-10
CVE-2025-0802 SourceCodester Best Employee Management System Administrative Endpoint View_user.php access control — Best Employee Management System CWE-284 7.3 High 2025-01-29
CVE-2025-0800 SourceCodester Online Courseware Edit Teacher saveeditt.php cross site scripting — Online Courseware CWE-79 2.4 Low 2025-01-29
CVE-2025-0464 SourceCodester Task Reminder System Maintenance Section cross site scripting — Task Reminder System CWE-79 2.4 Low 2025-01-14
CVE-2025-0294 SourceCodester Home Clean Services Management System process.php sql injection — Home Clean Services Management System CWE-89 4.7 Medium 2025-01-07
CVE-2025-0173 SourceCodester Online Eyewear Shop view_order.php sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2025-01-02
CVE-2024-13069 SourceCodester Multi Role Login System add-user.php cross site scripting — Multi Role Login System CWE-79 3.5 Low 2024-12-31
CVE-2024-13021 SourceCodester Road Accident Map Marker add-mark.php cross site scripting — Road Accident Map Marker CWE-79 3.5 Low 2024-12-29
CVE-2024-12536 SourceCodester Kortex Lite Advocate Office Management System client_data.php cross site scripting — Kortex Lite Advocate Office Management System CWE-79 3.5 Low 2024-12-12
CVE-2024-12357 SourceCodester Best House Rental Management System index.php file inclusion — Best House Rental Management System CWE-73 4.3 Medium 2024-12-09
CVE-2024-12355 SourceCodester Phone Contact Manager System ContactBook.cpp adding input validation — Phone Contact Manager System CWE-20 3.3 Low 2024-12-09
CVE-2024-12354 SourceCodester Phone Contact Manager System User Menu MenuDisplayStart buffer overflow — Phone Contact Manager System CWE-120 5.3 Medium 2024-12-09
CVE-2024-12353 SourceCodester Phone Contact Manager System User Menu MenuDisplayStart input validation — Phone Contact Manager System CWE-20 3.3 Low 2024-12-09
CVE-2024-11860 SourceCodester Best House Rental Management System POST Request ajax.php improper authorization — Best House Rental Management System CWE-285 6.5 Medium 2024-11-27
CVE-2024-11743 SourceCodester Best House Rental Management System POST Request ajax.php cross-site request forgery — Best House Rental Management System CWE-352 4.3 Medium 2024-11-26
CVE-2024-11742 SourceCodester Best House Rental Management System ajax.php cross site scripting — Best House Rental Management System CWE-79 3.5 Low 2024-11-26
CVE-2024-11262 SourceCodester Student Record Management System View All Student Marks main stack-based overflow — Student Record Management System CWE-121 5.3 Medium 2024-11-15
CVE-2024-11261 SourceCodester Student Record Management System Number of Students Menu StudentRecordManagementSystem.cpp memory corruption — Student Record Management System CWE-119 5.3 Medium 2024-11-15
CVE-2024-11247 SourceCodester Online Eyewear Shop Inventory Page Master.php cross site scripting — Online Eyewear Shop CWE-79 3.5 Low 2024-11-15
CVE-2024-11214 SourceCodester Best Employee Management System profile.php unrestricted upload — Best Employee Management System CWE-434 4.7 Medium 2024-11-14
CVE-2024-11213 SourceCodester Best Employee Management System edit_role.php sql injection — Best Employee Management System CWE-89 4.7 Medium 2024-11-14
CVE-2024-11212 SourceCodester Best Employee Management System fetch_product_details.php sql injection — Best Employee Management System CWE-89 6.3 Medium 2024-11-14
CVE-2024-11102 SourceCodester Hospital Management System edit-doc.php cross site scripting — Hospital Management System CWE-79 3.5 Low 2024-11-12
CVE-2024-11097 SourceCodester Student Record Management System Main Menu infinite loop — Student Record Management System CWE-835 3.3 Low 2024-11-12
CVE-2024-11073 SourceCodester Hospital Management System delete-account.php improper authorization — Hospital Management System CWE-285 4.3 Medium 2024-11-11
CVE-2024-11054 SourceCodester Simple Music Cloud Community System ajax.php unrestricted upload — Simple Music Cloud Community System CWE-434 6.3 Medium 2024-11-10
CVE-2024-10990 SourceCodester Online Veterinary Appointment System view_service.php sql injection — Online Veterinary Appointment System CWE-89 6.3 Medium 2024-11-08
CVE-2024-10559 SourceCodester Airport Booking Management System details buffer overflow — Airport Booking Management System CWE-120 5.3 Medium 2024-10-31
CVE-2024-10450 SourceCodester Kortex Lite Advocate Office Management System POST Parameter edit_profile.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2024-10-28

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.