Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2026-13527 SourceCodester Class and Exam Timetabling System preview4.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-29
CVE-2026-13526 SourceCodester Class and Exam Timetabling System edit_class.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-29
CVE-2026-13521 SourceCodester Class and Exam Timetabling System preview5.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-29
CVE-2026-13488 SourceCodester Class and Exam Timetabling System preview7.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-28
CVE-2026-13487 SourceCodester Class and Exam Timetabling System archive.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-28
CVE-2026-13486 SourceCodester Class and Exam Timetabling System preview6.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-28
CVE-2026-13485 SourceCodester Class and Exam Timetabling System preview.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-28
CVE-2026-12529 SourceCodester CET Automated Grading System with AI Predictive Analytics Student Self-Registration Endpoint index.php access control — CET Automated Grading System with AI Predictive Analytics CWE-284 7.3 High 2026-06-17
CVE-2026-12176 SourceCodester CET Automated Grading System with AI Predictive Analytics index.php cross site scripting — CET Automated Grading System with AI Predictive Analytics CWE-79 4.3 Medium 2026-06-13
CVE-2026-11552 SourceCodester Onlne Examination & Learning Management System import_users.php hard-coded password — Onlne Examination & Learning Management System CWE-259 5.3 Medium 2026-06-08
CVE-2026-11520 SourceCodester Inventory System header.php cross site scripting — Inventory System CWE-79 3.5 Low 2026-06-08
CVE-2026-11519 SourceCodester Inventory System Account Creation users_handler.php improper authorization — Inventory System CWE-285 6.3 Medium 2026-06-08
CVE-2026-11518 SourceCodester Inventory System User Management users.php cross site scripting — Inventory System CWE-79 4.3 Medium 2026-06-08
CVE-2026-11515 SourceCodester Barangay Resident Profiling and Information Management System Password Reset passsword_reset.php hard-coded password — Barangay Resident Profiling and Information Management System CWE-259 5.3 Medium 2026-06-08
CVE-2026-11501 SourceCodester Hospitals Patient Records Management System Master.php save_patient sql injection — Hospitals Patient Records Management System CWE-89 7.3 High 2026-06-08
CVE-2026-11486 SourceCodester Class and Exam Timetabling System archive1.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-08
CVE-2026-11485 SourceCodester Class and Exam Timetabling System archive2.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-08
CVE-2026-11484 SourceCodester Class and Exam Timetabling System archive3.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-08
CVE-2026-11483 SourceCodester Class and Exam Timetabling System archive4.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-08
CVE-2026-11482 SourceCodester Class and Exam Timetabling System archive5.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-08
CVE-2026-11472 SourceCodester Class and Exam Timetabling System index1.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-08
CVE-2026-11471 SourceCodester Class and Exam Timetabling System index2.php sql injection — Class and Exam Timetabling System CWE-89 7.3 High 2026-06-08
CVE-2026-11468 SourceCodester Hospitals Patient Records Management System page room_types cross site scripting — Hospitals Patient Records Management System CWE-79 2.4 Low 2026-06-07
CVE-2026-11338 SourceCodester Ship Ferry Ticket Reservation System manage_user cross site scripting — Ship Ferry Ticket Reservation System CWE-79 2.4 Low 2026-06-05
CVE-2026-10877 SourceCodester Ship Ferry Ticket Reservation System Admin Login login.php sql injection — Ship Ferry Ticket Reservation System CWE-89 7.3 High 2026-06-04
CVE-2026-10876 SourceCodester Ship Ferry Ticket Reservation System admin improper authorization — Ship Ferry Ticket Reservation System CWE-285 6.3 Medium 2026-06-04
CVE-2026-10704 SourceCodester Pizzafy E-Commerce System Administrative Control Panel admin_class_novo.php login sql injection — Pizzafy E-Commerce System CWE-89 7.3 High 2026-06-03
CVE-2026-10694 SourceCodester Online Food Ordering System index.php include file inclusion — Online Food Ordering System CWE-73 7.3 High 2026-06-03
CVE-2026-10693 SourceCodester Online Boat Reservation System Administrative Endpoint improper authorization — Online Boat Reservation System CWE-285 6.3 Medium 2026-06-03
CVE-2026-10624 SourceCodester Human Resource Management Employee View detailview.php resource injection — Human Resource Management CWE-99 4.3 Medium 2026-06-02

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.