Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2022-2698 SourceCodester Simple E-Learning System search.php sql injection — Simple E-Learning System CWE-89 6.3 Medium 2022-08-07
CVE-2022-2697 SourceCodester Simple E-Learning System comment_frame.php sql injection — Simple E-Learning System CWE-89 6.3 Medium 2022-08-07
CVE-2022-2694 SourceCodester Company Website CMS unrestricted upload — Company Website CMS CWE-434 6.3 Medium 2022-08-06
CVE-2022-2693 SourceCodester Electronic Medical Records System UPDATE Statement register.php sql injection — Electronic Medical Records System CWE-89 6.3 Medium 2022-08-06
CVE-2022-2692 SourceCodester Wedding Hall Booking System Staff User Profile cross site scripting — Wedding Hall Booking System CWE-79 3.5 Low 2022-08-06
CVE-2022-2691 SourceCodester Wedding Hall Booking System Profile Page cross site scripting — Wedding Hall Booking System CWE-79 3.5 Low 2022-08-06
CVE-2022-2690 SourceCodester Wedding Hall Booking System Booking Form cross site scripting — Wedding Hall Booking System CWE-79 3.5 Low 2022-08-06
CVE-2022-2689 SourceCodester Wedding Hall Booking System Contact Page cross site scripting — Wedding Hall Booking System CWE-79 3.5 Low 2022-08-06
CVE-2022-2688 SourceCodester Expense Management System POST Parameter report.php fetch_report_credit sql injection — Expense Management System CWE-89 6.3 Medium 2022-08-06
CVE-2022-2687 SourceCodester Gym Management System sql injection — Gym Management System CWE-89 6.3 Medium 2022-08-06
CVE-2022-2685 SourceCodester Interview Management System addQuestion.php cross site scripting — Interview Management System CWE-79 3.5 Low 2022-08-05
CVE-2022-2684 SourceCodester Apartment Visitor Management System manage-apartment.php cross site scripting — Apartment Visitor Management System CWE-79 3.5 Low 2022-08-05
CVE-2022-2683 SourceCodester Simple Food Ordering System login.php cross site scripting — Simple Food Ordering System CWE-79 3.5 Low 2022-08-05
CVE-2022-2682 SourceCodester Alphaware Simple E-Commerce System stockin.php cross site scripting — Alphaware Simple E-Commerce System CWE-79 3.5 Low 2022-08-05
CVE-2022-2681 SourceCodester Online Student Admission System Student User Page edit-profile.php cross site scripting — Online Student Admission System CWE-79 3.5 Low 2022-08-05
CVE-2022-2680 SourceCodester Church Management System login.php sql injection — Church Management System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2679 SourceCodester Interview Management System viewReport.php sql injection — Interview Management System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2678 SourceCodester Alphaware Simple E-Commerce System Background Management Page admin_feature.php unrestricted upload — Alphaware Simple E-Commerce System CWE-434 6.3 Medium 2022-08-05
CVE-2022-2677 SourceCodester Apartment Visitor Management System index.php sql injection — Apartment Visitor Management System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2676 SourceCodester Electronic Medical Records System POST Request sql injection — Electronic Medical Records System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2674 SourceCodester Best Fee Management System admin_class.php login sql injection — Best Fee Management System CWE-89 7.3 High 2022-08-05
CVE-2022-2672 SourceCodester Garage Management System createUser.php sql injection — Garage Management System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2671 SourceCodester Garage Management System removeUser.php sql injection — Garage Management System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2667 SourceCodester Loan Management System delete_lplan.php sql injection — Loan Management System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2665 SourceCodester Simple E-Learning System classroom.php sql injection — Simple E-Learning System CWE-89 6.3 Medium 2022-08-05
CVE-2022-2656 SourceCodester Multi Language Hotel Management Software sql injection — Multi Language Hotel Management Software CWE-89 6.3 Medium 2022-08-04
CVE-2022-2648 SourceCodester Multi Language Hotel Management Software sql injection — Multi Language Hotel Management Software CWE-89 6.3 Medium 2022-08-04
CVE-2022-2646 SourceCodester Online Admission System index.php cross site scripting — Online Admission System CWE-79 3.5 Low 2022-08-04
CVE-2022-2645 SourceCodester Garage Management System edituser.php cross site scripting — Garage Management System CWE-79 3.5 Low 2022-08-04
CVE-2022-2644 SourceCodester Online Admission System GET Parameter sql injection — Online Admission System CWE-89 5.5 Medium 2022-08-04

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.