Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2024-4926 SourceCodester School Intramurals Student Attendance Management System manage_student.php sql injection — School Intramurals Student Attendance Management System CWE-89 6.3 Medium 2024-05-16
CVE-2024-4925 SourceCodester School Intramurals Student Attendance Management System manage_course.php sql injection — School Intramurals Student Attendance Management System CWE-89 6.3 Medium 2024-05-16
CVE-2024-4922 SourceCodester Simple Image Stack Website cross site scripting — Simple Image Stack Website CWE-79 3.5 Low 2024-05-16
CVE-2024-4921 SourceCodester Employee and Visitor Gate Pass Logging System unrestricted upload — Employee and Visitor Gate Pass Logging System CWE-434 6.3 Medium 2024-05-16
CVE-2024-4920 SourceCodester Online Discussion Forum Site registerH.php unrestricted upload — Online Discussion Forum Site CWE-434 7.3 High 2024-05-16
CVE-2024-4820 SourceCodester Online Computer and Laptop Store unrestricted upload — Online Computer and Laptop Store CWE-434 6.3 Medium 2024-05-13
CVE-2024-4809 SourceCodester Open Source Clinic Management System setting.php unrestricted upload — Open Source Clinic Management System CWE-434 6.3 Medium 2024-05-13
CVE-2024-4798 SourceCodester Online Computer and Laptop Store manage_brand.php sql injection — Online Computer and Laptop Store CWE-89 6.3 Medium 2024-05-12
CVE-2024-4645 SourceCodester Prison Management System changepassword.php cross site scripting — Prison Management System CWE-79 3.5 Low 2024-05-08
CVE-2024-4644 SourceCodester Prison Management System changepassword.php cross site scripting — Prison Management System CWE-79 3.5 Low 2024-05-08
CVE-2024-4528 SourceCodester Prison Management System user-record.php cross site scripting — Prison Management System CWE-79 2.4 Low 2024-05-06
CVE-2024-4512 SourceCodester Prison Management System edit-profile.php cross site scripting — Prison Management System CWE-79 3.5 Low 2024-05-06
CVE-2024-4500 SourceCodester Prison Management System edit-photo.php unrestricted upload — Prison Management System CWE-434 6.3 Medium 2024-05-05
CVE-2024-4349 SourceCodester Pisay Online E-Learning System controller.php unrestricted upload — Pisay Online E-Learning System CWE-434 7.3 High 2024-04-30
CVE-2024-4093 SourceCodester Simple Subscription Website view_application.php sql injection — Simple Subscription Website CWE-89 6.3 Medium 2024-04-24
CVE-2024-3948 SourceCodester Home Clean Service System Photo student.add.php unrestricted upload — Home Clean Service System CWE-434 6.3 Medium 2024-04-18
CVE-2024-3797 SourceCodester QR Code Bookmark System sql injection — QR Code Bookmark System CWE-89 6.3 Medium 2024-04-15
CVE-2024-3695 SourceCodester Computer Laboratory Management System Users.php cross site scripting — Computer Laboratory Management System CWE-79 3.5 Low 2024-04-12
CVE-2024-3621 SourceCodester Kortex Lite Advocate Office Management System register_case.php sql injection — Kortex Lite Advocate Office Management System CWE-89 4.7 Medium 2024-04-11
CVE-2024-3620 SourceCodester Kortex Lite Advocate Office Management System adds.php sql injection — Kortex Lite Advocate Office Management System CWE-89 4.7 Medium 2024-04-11
CVE-2024-3619 SourceCodester Kortex Lite Advocate Office Management System addcase_stage.php sql injection — Kortex Lite Advocate Office Management System CWE-89 4.7 Medium 2024-04-11
CVE-2024-3618 SourceCodester Kortex Lite Advocate Office Management System activate_case.php sql injection — Kortex Lite Advocate Office Management System CWE-89 4.7 Medium 2024-04-11
CVE-2024-3617 SourceCodester Kortex Lite Advocate Office Management System deactivate_case.php sql injection — Kortex Lite Advocate Office Management System CWE-89 4.7 Medium 2024-04-11
CVE-2024-3616 SourceCodester Warehouse Management System pengguna.php cross site scripting — Warehouse Management System CWE-79 3.5 Low 2024-04-11
CVE-2024-3614 SourceCodester Warehouse Management System customer.php cross site scripting — Warehouse Management System CWE-79 3.5 Low 2024-04-11
CVE-2024-3613 SourceCodester Warehouse Management System supplier.php cross site scripting — Warehouse Management System CWE-79 3.5 Low 2024-04-11
CVE-2024-3612 SourceCodester Warehouse Management System barang.php cross site scripting — Warehouse Management System CWE-79 3.5 Low 2024-04-10
CVE-2024-3466 SourceCodester Laundry Management System Pengeluaran.php laporan_filter sql injection — Laundry Management System CWE-89 5.5 Medium 2024-04-08
CVE-2024-3465 SourceCodester Laundry Management System Transaki.php laporan_filter sql injection — Laundry Management System CWE-89 6.3 Medium 2024-04-08
CVE-2024-3464 SourceCodester Laundry Management System Pelanggan.php laporan_filter sql injection — Laundry Management System CWE-89 6.3 Medium 2024-04-08

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.