Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2023-1360 SourceCodester Employee Payslip Generator with Sending Mail New User Creation sql injection — Employee Payslip Generator with Sending Mail CWE-89 4.7 Medium 2023-03-12
CVE-2023-1359 SourceCodester Gadget Works Online Ordering System Add New User cross site scripting — Gadget Works Online Ordering System CWE-79 2.4 Low 2023-03-12
CVE-2023-1358 SourceCodester Gadget Works Online Ordering System POST Parameter login.php sql injection — Gadget Works Online Ordering System CWE-89 6.3 Medium 2023-03-12
CVE-2023-1357 SourceCodester Simple Bakery Shop Management System Admin Login sql injection — Simple Bakery Shop Management System CWE-89 7.3 High 2023-03-12
CVE-2023-1354 SourceCodester Design and Implementation of Covid-19 Directory on Vaccination System register.php cross site scripting — Design and Implementation of Covid-19 Directory on Vaccination System CWE-79 3.5 Low 2023-03-11
CVE-2023-1353 SourceCodester Design and Implementation of Covid-19 Directory on Vaccination System verification.php cross site scripting — Design and Implementation of Covid-19 Directory on Vaccination System CWE-79 3.5 Low 2023-03-11
CVE-2023-1352 SourceCodester Design and Implementation of Covid-19 Directory on Vaccination System login.php sql injection — Design and Implementation of Covid-19 Directory on Vaccination System CWE-89 5.6 Medium 2023-03-11
CVE-2023-1351 SourceCodester Computer Parts Sales and Inventory System cust_transac.php sql injection — Computer Parts Sales and Inventory System CWE-89 6.3 Medium 2023-03-11
CVE-2023-1311 SourceCodester Friendly Island Pizza Website and Ordering System GET Parameter large.php sql injection — Friendly Island Pizza Website and Ordering System CWE-89 6.3 Medium 2023-03-10
CVE-2023-1310 SourceCodester Online Graduate Tracer System prof.php sql injection — Online Graduate Tracer System CWE-89 6.3 Medium 2023-03-10
CVE-2023-1309 SourceCodester Online Graduate Tracer System search_it.php sql injection — Online Graduate Tracer System CWE-89 6.3 Medium 2023-03-10
CVE-2023-1308 SourceCodester Online Graduate Tracer System adminlog.php sql injection — Online Graduate Tracer System CWE-89 6.3 Medium 2023-03-10
CVE-2023-1302 SourceCodester File Tracker Manager System borrow1.php cross site scripting — File Tracker Manager System CWE-79 3.5 Low 2023-03-09
CVE-2023-1301 SourceCodester Friendly Island Pizza Website and Ordering System GET Parameter deleteorder.php sql injection — Friendly Island Pizza Website and Ordering System CWE-89 6.3 Medium 2023-03-09
CVE-2023-1300 SourceCodester COVID 19 Testing Management System POST Parameter patient-report.php sql injection — COVID 19 Testing Management System CWE-89 6.3 Medium 2023-03-09
CVE-2023-1294 SourceCodester File Tracker Manager System POST Parameter login.php sql injection — File Tracker Manager System CWE-89 7.3 High 2023-03-09
CVE-2023-1293 SourceCodester Online Graduate Tracer System admin_cs.php mysqli_query sql injection — Online Graduate Tracer System CWE-89 5.0 Medium 2023-03-09
CVE-2023-1292 SourceCodester Sales Tracker Management System Master.php delete_client sql injection — Sales Tracker Management System CWE-89 6.3 Medium 2023-03-09
CVE-2023-1291 SourceCodester Sales Tracker Management System manage_client.php sql injection — Sales Tracker Management System CWE-89 6.3 Medium 2023-03-09
CVE-2023-1290 SourceCodester Sales Tracker Management System view_client.php sql injection — Sales Tracker Management System CWE-89 6.3 Medium 2023-03-09
CVE-2023-1275 SourceCodester Phone Shop Sales Managements System CAPTCHA index.php cross site scripting — Phone Shop Sales Managements System CWE-79 3.5 Low 2023-03-08
CVE-2023-1254 SourceCodester Health Center Patient Record Management System birthing_print.php cross site scripting — Health Center Patient Record Management System CWE-79 3.5 Low 2023-03-07
CVE-2023-1253 SourceCodester Health Center Patient Record Management System login.php sql injection — Health Center Patient Record Management System CWE-89 7.3 High 2023-03-07
CVE-2023-1180 SourceCodester Health Center Patient Record Management System hematology_print.php cross site scripting — Health Center Patient Record Management System CWE-79 3.5 Low 2023-03-05
CVE-2023-1179 SourceCodester Computer Parts Sales and Inventory System Add Supplier cross site scripting — Computer Parts Sales and Inventory System CWE-79 3.5 Low 2023-03-05
CVE-2023-1156 SourceCodester Health Center Patient Record Management System fecalysis_form.php cross site scripting — Health Center Patient Record Management System CWE-79 3.5 Low 2023-03-02
CVE-2023-1151 SourceCodester Electronic Medical Records System Cookie administrator.php sql injection — Electronic Medical Records System CWE-89 6.3 Medium 2023-03-02
CVE-2023-1131 SourceCodester Computer Parts Sales and Inventory System customer.php cross site scripting — Computer Parts Sales and Inventory System CWE-79 3.5 Low 2023-03-01
CVE-2023-1130 SourceCodester Computer Parts Sales and Inventory System processlogin sql injection — Computer Parts Sales and Inventory System CWE-89 6.3 Medium 2023-03-01
CVE-2023-1113 SourceCodester Simple Payroll System POST Parameter cross site scripting — Simple Payroll System CWE-79 2.4 Low 2023-03-01

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.