Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2023-3678 SourceCodester AC Repair and Services System HTTP POST Request sql injection — AC Repair and Services System CWE-89 6.3 Medium 2023-07-15
CVE-2023-3661 SourceCodester AC Repair and Services System sql injection — AC Repair and Services System CWE-89 6.3 Medium 2023-07-13
CVE-2023-3659 SourceCodester AC Repair and Services System cross site scripting — AC Repair and Services System CWE-79 3.5 Low 2023-07-13
CVE-2023-3658 SourceCodester AC Repair and Services System HTTP POST Request sql injection — AC Repair and Services System CWE-89 6.3 Medium 2023-07-13
CVE-2023-3657 SourceCodester AC Repair and Services System HTTP POST Request sql injection — AC Repair and Services System CWE-89 6.3 Medium 2023-07-13
CVE-2023-3644 SourceCodester Service Provider Management System sql injection — Service Provider Management System CWE-89 6.3 Medium 2023-07-12
CVE-2023-3619 SourceCodester AC Repair and Services System HTTP POST Request sql injection — AC Repair and Services System CWE-89 6.3 Medium 2023-07-11
CVE-2023-3617 SourceCodester Best POS Management System Login Page admin_class.php sql injection — Best POS Management System CWE-89 7.3 High 2023-07-11
CVE-2023-3599 SourceCodester Best Fee Management System Add User admin_class.php save_user access control — Best Fee Management System CWE-264 6.3 Medium 2023-07-10
CVE-2023-3534 SourceCodester Shopping Website check_availability.php sql injection — Shopping Website CWE-89 6.3 Medium 2023-07-07
CVE-2023-3503 SourceCodester Shopping Website insert-product.php unrestricted upload — Shopping Website CWE-434 6.3 Medium 2023-07-04
CVE-2023-3502 SourceCodester Shopping Website search-result.php sql injection — Shopping Website CWE-89 6.3 Medium 2023-07-04
CVE-2023-3458 SourceCodester Shopping Website forgot-password.php sql injection — Shopping Website CWE-89 6.3 Medium 2023-06-29
CVE-2023-3457 SourceCodester Shopping Website index.php sql injection — Shopping Website CWE-89 6.3 Medium 2023-06-29
CVE-2023-3391 SourceCodester Human Resource Management System detailview.php sql injection — Human Resource Management System CWE-89 6.3 Medium 2023-06-23
CVE-2023-3383 SourceCodester Game Result Matrix System GET Parameter athlete-profile.php sql injection — Game Result Matrix System CWE-89 6.3 Medium 2023-06-23
CVE-2023-3382 SourceCodester Game Result Matrix System GET Parameter save-delegates.php cross site scripting — Game Result Matrix System CWE-79 3.5 Low 2023-06-23
CVE-2023-3381 SourceCodester Online School Fees System GET Parameter datatable.php cross site scripting — Online School Fees System CWE-79 3.5 Low 2023-06-23
CVE-2023-3340 SourceCodester Online School Fees System GET Parameter ajx.php sql injection — Online School Fees System CWE-89 6.3 Medium 2023-06-20
CVE-2023-3318 SourceCodester Resort Management System cross site scripting — Resort Management System CWE-79 3.5 Low 2023-06-19
CVE-2023-3309 SourceCodester Resort Reservation System Manage Room Page ?page=rooms cross site scripting — Resort Reservation System CWE-79 3.5 Low 2023-06-18
CVE-2023-3189 SourceCodester Online School Fees System POST Parameter branch.php cross site scripting — Online School Fees System CWE-79 3.5 Low 2023-06-14
CVE-2023-3184 SourceCodester Sales Tracker Management System cross site scripting — Sales Tracker Management System CWE-79 2.4 Low 2023-06-09
CVE-2023-3183 SourceCodester Performance Indicator System addproduct.php cross site scripting — Performance Indicator System CWE-79 3.5 Low 2023-06-09
CVE-2023-3177 SourceCodester Lost and Found Information System view_inquiry.php sql injection — Lost and Found Information System CWE-89 6.3 Medium 2023-06-09
CVE-2023-3176 SourceCodester Lost and Found Information System manage_user.php sql injection — Lost and Found Information System CWE-89 6.3 Medium 2023-06-09
CVE-2023-3165 SourceCodester Life Insurance Management System POST Parameter insertNominee.php cross site scripting — Life Insurance Management System CWE-79 3.5 Low 2023-06-08
CVE-2023-3152 SourceCodester Online Discussion Forum Site view_post.php sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07
CVE-2023-3151 SourceCodester Online Discussion Forum Site manage_user.php sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07
CVE-2023-3150 SourceCodester Online Discussion Forum Site manage_post.php sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.