Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2024-10422 SourceCodester Attendance and Payroll System overtime_add.php sql injection — Attendance and Payroll System CWE-89 6.3 Medium 2024-10-27
CVE-2024-10421 SourceCodester Attendance and Payroll System overtime_row.php sql injection — Attendance and Payroll System CWE-89 6.3 Medium 2024-10-27
CVE-2024-10420 SourceCodester Attendance and Payroll System update.php upload unrestricted upload — Attendance and Payroll System CWE-434 6.3 Medium 2024-10-27
CVE-2024-10413 SourceCodester Online Hotel Reservation System update.php upload unrestricted upload — Online Hotel Reservation System CWE-434 6.3 Medium 2024-10-27
CVE-2024-10411 SourceCodester Online Hotel Reservation System controller.php doCheckout sql injection — Online Hotel Reservation System CWE-89 6.3 Medium 2024-10-27
CVE-2024-10410 SourceCodester Online Hotel Reservation System controller.php upload unrestricted upload — Online Hotel Reservation System CWE-434 6.3 Medium 2024-10-27
CVE-2024-10407 SourceCodester Petrol Pump Management Software edit_customer.php sql injection — Petrol Pump Management Software CWE-89 6.3 Medium 2024-10-26
CVE-2024-10406 SourceCodester Petrol Pump Management Software edit_fuel.php sql injection — Petrol Pump Management Software CWE-89 6.3 Medium 2024-10-26
CVE-2024-10380 SourceCodester Petrol Pump Management Software ajax_product.php sql injection — Petrol Pump Management Software CWE-89 6.3 Medium 2024-10-25
CVE-2024-10371 SourceCodester Payroll Management System main login buffer overflow — Payroll Management System CWE-120 6.3 Medium 2024-10-25
CVE-2024-10355 SourceCodester Petrol Pump Management Software invoice.php sql injection — Petrol Pump Management Software CWE-89 4.7 Medium 2024-10-25
CVE-2024-10354 SourceCodester Petrol Pump Management Software print.php sql injection — Petrol Pump Management Software CWE-89 4.7 Medium 2024-10-25
CVE-2024-10353 SourceCodester Online Exam System admin-dashboard access control — Online Exam System CWE-284 6.3 Medium 2024-10-24
CVE-2024-10349 SourceCodester Best House Rental Management System ajax.php delete_tenant sql injection — Best House Rental Management System CWE-89 6.3 Medium 2024-10-24
CVE-2024-10348 SourceCodester Best House Rental Management System Manage Tenant Details index.php cross site scripting — Best House Rental Management System CWE-79 3.5 Low 2024-10-24
CVE-2024-10335 SourceCodester Garbage Collection Management System login.php sql injection — Garbage Collection Management System CWE-89 7.3 High 2024-10-24
CVE-2024-10163 SourceCodester Sentiment Based Movie Rating System movie_details.php sql injection — Sentiment Based Movie Rating System CWE-89 6.3 Medium 2024-10-20
CVE-2024-9975 SourceCodester Drag and Drop Image Upload upload.php unrestricted upload — Drag and Drop Image Upload CWE-434 6.3 Medium 2024-10-15
CVE-2024-9974 SourceCodester Online Eyewear Shop POST Request Master.php sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2024-10-15
CVE-2024-9973 SourceCodester Online Eyewear Shop Report Viewing Page page sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2024-10-15
CVE-2024-9952 SourceCodester Online Eyewear Shop Contact Information Page contact_info cross site scripting — Online Eyewear Shop CWE-79 2.4 Low 2024-10-15
CVE-2024-9906 SourceCodester Online Eyewear Shop cross site scripting — Online Eyewear Shop CWE-79 3.5 Low 2024-10-13
CVE-2024-9905 SourceCodester Online Eyewear Shop sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2024-10-13
CVE-2024-9818 SourceCodester Online Veterinary Appointment System manage_category.php sql injection — Online Veterinary Appointment System CWE-89 7.3 High 2024-10-10
CVE-2024-9810 SourceCodester Record Management System sort2_user.php cross site scripting — Record Management System CWE-79 3.5 Low 2024-10-10
CVE-2024-9809 SourceCodester Online Eyewear Shop Master.php delete_product sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2024-10-10
CVE-2024-9808 SourceCodester Online Eyewear Shop sql injection — Online Eyewear Shop CWE-89 6.3 Medium 2024-10-10
CVE-2024-9799 SourceCodester Profile Registration without Reload Refresh add.php cross site scripting — Profile Registration without Reload Refresh CWE-79 3.5 Low 2024-10-10
CVE-2024-9328 SourceCodester Advocate Office Management System edit_client.php sql injection — Advocate Office Management System CWE-89 6.3 Medium 2024-09-29
CVE-2024-9323 SourceCodester Inventory Management System add_staff.php cross site scripting — Inventory Management System CWE-79 3.5 Low 2024-09-29

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.