Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2024-8222 SourceCodester Music Gallery Site sql injection — Music Gallery Site CWE-89 6.3 Medium 2024-08-27
CVE-2024-8221 SourceCodester Music Gallery Site manage_category.php sql injection — Music Gallery Site CWE-89 6.3 Medium 2024-08-27
CVE-2024-8217 SourceCodester E-Commerce Website registration.php sql injection — E-Commerce Website CWE-89 7.3 High 2024-08-27
CVE-2024-8172 SourceCodester QR Code Attendance System delete-student.php cross site scripting — QR Code Attendance System CWE-79 3.5 Low 2024-08-26
CVE-2024-8170 SourceCodester Zipped Folder Manager App add-folder.php unrestricted upload — Zipped Folder Manager App CWE-434 3.5 Low 2024-08-26
CVE-2024-8154 SourceCodester QR Code Bookmark System Parameter update-bookmark.php cross site scripting — QR Code Bookmark System CWE-79 3.5 Low 2024-08-25
CVE-2024-8153 SourceCodester QR Code Bookmark System delete-bookmark.php cross site scripting — QR Code Bookmark System CWE-79 3.5 Low 2024-08-25
CVE-2024-8152 SourceCodester QR Code Bookmark System Parameter add-bookmark.php cross site scripting — QR Code Bookmark System CWE-79 3.5 Low 2024-08-25
CVE-2024-8151 SourceCodester Interactive Map with Marker delete-mark.php cross site scripting — Interactive Map with Marker CWE-79 3.5 Low 2024-08-25
CVE-2024-8142 SourceCodester Daily Calories Monitoring Tool delete-calorie.php cross site scripting — Daily Calories Monitoring Tool CWE-79 3.5 Low 2024-08-25
CVE-2024-8141 SourceCodester Daily Calories Monitoring Tool add-calorie.php cross site scripting — Daily Calories Monitoring Tool CWE-79 3.5 Low 2024-08-25
CVE-2024-8140 SourceCodester Task Progress Tracker update-task.php cross site scripting — Task Progress Tracker CWE-79 3.5 Low 2024-08-25
CVE-2024-8137 SourceCodester Record Management System search_user.php cross site scripting — Record Management System CWE-79 3.5 Low 2024-08-24
CVE-2024-8136 SourceCodester Record Management System sort1_user.php cross site scripting — Record Management System CWE-79 3.5 Low 2024-08-24
CVE-2024-8089 SourceCodester E-Commerce System controller.php unrestricted upload — E-Commerce System CWE-434 6.3 Medium 2024-08-22
CVE-2024-8087 SourceCodester E-Commerce System popup_Item.php sql injection — E-Commerce System CWE-89 6.3 Medium 2024-08-22
CVE-2024-8086 SourceCodester E-Commerce System Admin Login login.php sql injection — E-Commerce System CWE-89 7.3 High 2024-08-22
CVE-2024-8084 SourceCodester Online Computer and Laptop Store Setting SystemSettings.php cross site scripting — Online Computer and Laptop Store CWE-79 2.4 Low 2024-08-22
CVE-2024-8083 SourceCodester Online Computer and Laptop Store Master.php sql injection — Online Computer and Laptop Store CWE-89 6.3 Medium 2024-08-22
CVE-2024-8080 SourceCodester Online Health Care System search.php sql injection — Online Health Care System CWE-89 6.3 Medium 2024-08-22
CVE-2024-7949 SourceCodester Online Graduate Tracer System fetch_genderit.php sql injection — Online Graduate Tracer System CWE-89 6.3 Medium 2024-08-20
CVE-2024-7948 SourceCodester Accounts Manager App Update Account Page update-account.php cross site scripting — Accounts Manager App CWE-79 3.5 Low 2024-08-20
CVE-2024-7947 SourceCodester Point of Sales and Inventory Management System login.php sql injection — Point of Sales and Inventory Management System CWE-89 7.3 High 2024-08-20
CVE-2024-7942 SourceCodester Leads Manager Tool update-leads.php cross site scripting — Leads Manager Tool CWE-79 3.5 Low 2024-08-20
CVE-2024-7931 SourceCodester Online Graduate Tracer System view_csprofile.php sql injection — Online Graduate Tracer System CWE-89 6.3 Medium 2024-08-19
CVE-2024-7930 SourceCodester Clinics Patient Management System get_packings.php sql injection — Clinics Patient Management System CWE-89 6.3 Medium 2024-08-19
CVE-2024-7929 SourceCodester Simple Forum Website Signup Page registration.php cross site scripting — Simple Forum Website CWE-79 5.3 Medium 2024-08-19
CVE-2024-7914 SourceCodester Yoga Class Registration System SystemSettings.php cross site scripting — Yoga Class Registration System CWE-79 3.5 Low 2024-08-18
CVE-2024-7911 SourceCodester Simple Online Bidding System index.php file inclusion — Simple Online Bidding System CWE-73 6.3 Medium 2024-08-18
CVE-2024-7853 SourceCodester Yoga Class Registration System sql injection — Yoga Class Registration System CWE-89 6.3 Medium 2024-08-16

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.