Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2026-77391 SourceCodester Dynamic Input Field Generator Using HTML, CSS, and PHP cross-site request forgery — Dynamic Input Field Generator Using HTML, CSS, and PHP CWE-352 4.3 Medium 2026-08-21
CVE-2026-76999 SourceCodester CET Automated Grading System with AI Predictive Analytics index.php add_grade improper authorization — CET Automated Grading System with AI Predictive Analytics CWE-285 6.3 Medium 2026-08-20
CVE-2026-76998 SourceCodester Simple Online Food Ordering System ajax.php delete_category sql injection — Simple Online Food Ordering System CWE-89 7.3 High 2026-08-20
CVE-2026-76997 SourceCodester Simple Online Food Ordering System ajax.php save_category sql injection — Simple Online Food Ordering System CWE-89 6.3 Medium 2026-08-20
CVE-2026-76996 SourceCodester Simple Online Food Ordering System view_order.php sql injection — Simple Online Food Ordering System CWE-89 7.3 High 2026-08-20
CVE-2026-76995 SourceCodester Simple Online Food Ordering System ajax.php save_menu unrestricted upload — Simple Online Food Ordering System CWE-434 4.7 Medium 2026-08-20
CVE-2026-76050 SourceCodester Simple Online Food Ordering System ajax.php delete_menu sql injection — Simple Online Food Ordering System CWE-89 7.3 High 2026-08-19
CVE-2026-76049 SourceCodester Simple Online Food Ordering System ajax.php save_menu sql injection — Simple Online Food Ordering System CWE-89 7.3 High 2026-08-19
CVE-2026-76048 SourceCodester Simple Online Food Ordering System ajax.php login sql injection — Simple Online Food Ordering System CWE-89 7.3 High 2026-08-19
CVE-2026-75151 SourceCodester Onlne Examination & Learning Management System cross-site request forgery — Onlne Examination & Learning Management System CWE-352 4.3 Medium 2026-08-18
CVE-2026-75080 SourceCodester Class and Exam Timetabling System edit_subject1.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-08-17
CVE-2026-75079 SourceCodester Class and Exam Timetabling System edit_subject2.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-08-17
CVE-2026-75078 SourceCodester Class and Exam Timetabling System BSHRM1.php cross site scripting — Class and Exam Timetabling System CWE-79 4.3 Medium 2026-08-17
CVE-2026-75077 SourceCodester Class and Exam Timetabling System BSCE2.php cross site scripting — Class and Exam Timetabling System CWE-79 4.3 Medium 2026-08-17
CVE-2026-75014 SourceCodester Pet Grooming Management Software get_barcode_data.php sql injection — Pet Grooming Management Software CWE-89 7.3 High 2026-08-17
CVE-2026-19987 SourceCodester Best Employee Management System Profile exposure of information through directory listing — Best Employee Management System CWE-548 5.3 Medium 2026-08-17
CVE-2026-19925 SourceCodester Stock Management System Master.php delete_supplier sql injection — Stock Management System CWE-89 4.7 Medium 2026-08-16
CVE-2026-19904 SourceCodester Online Book Store System System Settings index.php site_settings cross site scripting — Online Book Store System CWE-79 2.4 Low 2026-08-15
CVE-2026-19903 SourceCodester Online Clothing Store SQL Database Backup shopping.sql file access — Online Clothing Store CWE-552 5.3 Medium 2026-08-15
CVE-2026-19899 SourceCodester Class and Exam Timetabling System edit_teacher.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-08-15
CVE-2026-19839 SourceCodester Simple Doctors Appointment System save_file.php save_doctor unrestricted upload — Simple Doctors Appointment System CWE-434 4.7 Medium 2026-08-14
CVE-2026-19825 SourceCodester Simple Client Management System Master.php save_service sql injection — Simple Client Management System CWE-89 7.3 High 2026-08-14
CVE-2026-19787 SourceCodester Air Cargo Management System Master.php save_cargo_type sql injection — Air Cargo Management System CWE-89 4.7 Medium 2026-08-14
CVE-2026-19710 SourceCodester Simple Student Information System view_department.php sql injection — Simple Student Information System CWE-89 7.3 High 2026-08-13
CVE-2026-19384 SourceCodester Simple Doctors Appointment System ajax.php set_appointment sql injection — Simple Doctors Appointment System CWE-89 7.3 High 2026-08-10
CVE-2026-19231 SourceCodester Simple Doctors Appointment System ajax.php delete_appointment sql injection — Simple Doctors Appointment System CWE-89 7.3 High 2026-08-07
CVE-2026-19230 SourceCodester Photo Share Website Comment Input Box ajax.php save_upload cross site scripting — Photo Share Website CWE-79 3.5 Low 2026-08-07
CVE-2026-19229 SourceCodester Online Clothing Store Dreamweaver Metadata Files _notes file information disclosure — Online Clothing Store CWE-538 5.3 Medium 2026-08-07
CVE-2026-19211 SourceCodester Photo Share Website ajax.php signup sql injection — Photo Share Website CWE-89 7.3 High 2026-08-07
CVE-2026-19210 SourceCodester Photo Share Website ajax.php save_upload unrestricted upload — Photo Share Website CWE-434 6.3 Medium 2026-08-07

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.