Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2023-3149 SourceCodester Online Discussion Forum Site manage_user.php sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07
CVE-2023-3148 SourceCodester Online Discussion Forum Site manage_post.php sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07
CVE-2023-3147 SourceCodester Online Discussion Forum Site view_category.php sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07
CVE-2023-3146 SourceCodester Online Discussion Forum Site manage_category.php sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07
CVE-2023-3145 SourceCodester Online Discussion Forum Site sql injection — Online Discussion Forum Site CWE-89 6.3 Medium 2023-06-07
CVE-2023-3144 SourceCodester Online Discussion Forum Site manage_post.php cross site scripting — Online Discussion Forum Site CWE-79 3.5 Low 2023-06-07
CVE-2023-3143 SourceCodester Online Discussion Forum Site manage_post.php cross site scripting — Online Discussion Forum Site CWE-79 3.5 Low 2023-06-07
CVE-2023-3120 SourceCodester Service Provider Management System view_service.php sql injection — Service Provider Management System CWE-89 6.3 Medium 2023-06-06
CVE-2023-3119 SourceCodester Service Provider Management System view.php sql injection — Service Provider Management System CWE-89 6.3 Medium 2023-06-06
CVE-2023-3059 SourceCodester Online Exam Form Submission update_s6.php sql injection — Online Exam Form Submission CWE-89 6.3 Medium 2023-06-02
CVE-2023-3018 SourceCodester Lost and Found Information System access control — Lost and Found Information System CWE-284 6.3 Medium 2023-05-31
CVE-2023-3017 SourceCodester Lost and Found Information System Manage User Page cross site scripting — Lost and Found Information System CWE-80 2.4 Low 2023-05-31
CVE-2023-3005 SourceCodester Local Service Search Engine Management System POST Parameter cross site scripting — Local Service Search Engine Management System CWE-79 3.5 Low 2023-05-31
CVE-2023-3004 SourceCodester Simple Chat System POST Parameter sql injection — Simple Chat System CWE-89 6.3 Medium 2023-05-31
CVE-2023-3003 SourceCodester Train Station Ticketing System GET Parameter manage_prices.php sql injection — Train Station Ticketing System CWE-89 6.3 Medium 2023-05-31
CVE-2023-2973 SourceCodester Students Online Internship Timesheet Syste cross site scripting — Students Online Internship Timesheet Syste CWE-79 2.4 Low 2023-05-30
CVE-2023-2962 SourceCodester Faculty Evaluation System sql injection — Faculty Evaluation System CWE-89 4.7 Medium 2023-05-29
CVE-2023-2955 SourceCodester Students Online Internship Timesheet System GET Parameter rendered_report.php sql injection — Students Online Internship Timesheet System CWE-89 6.3 Medium 2023-05-29
CVE-2023-2922 SourceCodester Comment System GET Parameter index.php cross site scripting — Comment System CWE-79 3.5 Low 2023-05-27
CVE-2023-2865 SourceCodester Theme Park Ticketing System GET Parameter print_ticket.php sql injection — Theme Park Ticketing System CWE-89 6.3 Medium 2023-05-24
CVE-2023-2864 SourceCodester Online Jewelry Store POST Parameter customer.php cross site scripting — Online Jewelry Store CWE-79 3.5 Low 2023-05-24
CVE-2023-2826 SourceCodester Class Scheduling System POST Parameter search_teacher_result.php cross site scripting — Class Scheduling System CWE-79 3.5 Low 2023-05-21
CVE-2023-2824 SourceCodester Dental Clinic Appointment Reservation System POST Parameter service.php cross site scripting — Dental Clinic Appointment Reservation System CWE-79 3.5 Low 2023-05-20
CVE-2023-2823 SourceCodester Class Scheduling System GET Parameter edit_subject.php sql injection — Class Scheduling System CWE-89 6.3 Medium 2023-05-20
CVE-2023-2815 SourceCodester Online Jewelry Store POST Parameter supplier.php sql injection — Online Jewelry Store CWE-89 6.3 Medium 2023-05-19
CVE-2023-2814 SourceCodester Class Scheduling System POST Parameter save_teacher.php cross site scripting — Class Scheduling System CWE-79 3.5 Low 2023-05-19
CVE-2023-2772 SourceCodester Budget and Expense Tracker System GET Parameter manage_budget.php sql injection — Budget and Expense Tracker System CWE-89 6.3 Medium 2023-05-17
CVE-2023-2771 SourceCodester Online Exam System data sql injection — Online Exam System CWE-89 6.3 Medium 2023-05-17
CVE-2023-2770 SourceCodester Online Exam System data sql injection — Online Exam System CWE-89 6.3 Medium 2023-05-17
CVE-2023-2769 SourceCodester Service Provider Management System sql injection — Service Provider Management System CWE-89 6.3 Medium 2023-05-17

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.