Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2024-7677 SourceCodester Car Driving School Management System SystemSettings.php update_settings_info cross site scripting — Car Driving School Management System CWE-79 3.5 Low 2024-08-11
CVE-2024-7676 Sourcecodester Car Driving School Management System Master.php save_package sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7669 SourceCodester Car Driving School Management System Master.php delete_enrollment sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7668 SourceCodester Car Driving School Management System Master.php delete_package sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7667 SourceCodester Car Driving School Management System User.php delete_users sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7666 SourceCodester Car Driving School Management System view_package.php sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7665 SourceCodester Car Driving School Management System manage_package.php sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7664 SourceCodester Car Driving School Management System view_details.php sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7663 SourceCodester Car Driving School Management System manage_user.php sql injection — Car Driving School Management System CWE-89 6.3 Medium 2024-08-11
CVE-2024-7662 SourceCodester Car Driving School Management System manag_package.php save_package cross-site request forgery — Car Driving School Management System CWE-352 4.3 Medium 2024-08-11
CVE-2024-7661 SourceCodester Car Driving School Management System index.php save_users cross-site request forgery — Car Driving School Management System CWE-352 4.3 Medium 2024-08-11
CVE-2024-7660 SourceCodester File Manager App Add File cross site scripting — File Manager App CWE-79 3.5 Low 2024-08-11
CVE-2024-7645 SourceCodester Clinics Patient Management System User Page users.php cross-site request forgery — Clinics Patient Management System CWE-352 4.3 Medium 2024-08-09
CVE-2024-7644 SourceCodester Leads Manager Tool Add Leads add-leads.php cross site scripting — Leads Manager Tool CWE-79 3.5 Low 2024-08-09
CVE-2024-7643 SourceCodester Leads Manager Tool Delete Leads delete-leads.php sql injection — Leads Manager Tool CWE-89 6.3 Medium 2024-08-09
CVE-2024-7642 SourceCodester Kortex Lite Advocate Office Management System activate_act.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2024-08-09
CVE-2024-7641 SourceCodester Kortex Lite Advocate Office Management System deactivate_act.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2024-08-09
CVE-2024-7640 SourceCodester Kortex Lite Advocate Office Management System delete_register.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2024-08-09
CVE-2024-7639 SourceCodester Kortex Lite Advocate Office Management System delete_act.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2024-08-09
CVE-2024-7638 SourceCodester Kortex Lite Advocate Office Management System delete_client.php sql injection — Kortex Lite Advocate Office Management System CWE-89 6.3 Medium 2024-08-09
CVE-2024-7494 SourceCodester Clinics Patient Management System new_prescription.php sql injection — Clinics Patient Management System CWE-89 6.3 Medium 2024-08-05
CVE-2024-7454 SourceCodester Clinics Patient Management System patients.php patient_name sql injection — Clinics Patient Management System CWE-89 6.3 Medium 2024-08-04
CVE-2024-7378 SourceCodester Simple Realtime Quiz System manage_question.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-02
CVE-2024-7377 SourceCodester Simple Realtime Quiz System view_result.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-02
CVE-2024-7376 SourceCodester Simple Realtime Quiz System print_quiz_records.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-02
CVE-2024-7375 SourceCodester Simple Realtime Quiz System my_quiz_result.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-02
CVE-2024-7374 SourceCodester Simple Realtime Quiz System manage_user.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-02
CVE-2024-7373 SourceCodester Simple Realtime Quiz System ajax.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-02
CVE-2024-7372 SourceCodester Simple Realtime Quiz System quiz_board.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-01
CVE-2024-7371 SourceCodester Simple Realtime Quiz System quiz_view.php sql injection — Simple Realtime Quiz System CWE-89 6.3 Medium 2024-08-01

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.