Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2022-2643 SourceCodester Online Admission System POST Parameter sql injection — Online Admission System CWE-89 6.3 Medium 2022-08-04
CVE-2022-2579 SourceCodester Garage Management System createUser.php cross site scripting — Garage Management System CWE-79 3.5 Low 2022-07-29
CVE-2022-2578 SourceCodester Garage Management System createUser.php access control — Garage Management System CWE-284 6.3 Medium 2022-07-29
CVE-2022-2577 SourceCodester Garage Management System edituser.php sql injection — Garage Management System CWE-89 6.3 Medium 2022-07-29
CVE-2022-2492 SourceCodester Library Management System index.php sql injection — Library Management System CWE-89 6.3 Medium 2022-07-20
CVE-2022-2491 SourceCodester Library Management System lab.php sql injection — Library Management System CWE-89 6.3 Medium 2022-07-20
CVE-2022-2490 SourceCodester Simple E-Learning System search.php sql injection — Simple E-Learning System CWE-89 6.3 Medium 2022-07-20
CVE-2022-2489 SourceCodester Simple E-Learning System classRoom.php sql injection — Simple E-Learning System CWE-89 6.3 Medium 2022-07-20
CVE-2022-2468 SourceCodester Garage Management System editbrand.php sql injection — Garage Management System CWE-89 6.3 Medium 2022-07-19
CVE-2022-2467 SourceCodester Garage Management System login.php sql injection — Garage Management System CWE-89 7.3 High 2022-07-19
CVE-2022-2396 SourceCodester Simple e-Learning System claire_blake cross site scripting — Simple e-Learning System CWE-79 3.5 Low 2022-07-14
CVE-2022-2364 SourceCodester Simple Parking Management System category cross site scripting — Simple Parking Management System CWE-79 3.5 Low 2022-07-12
CVE-2022-2363 SourceCodester Simple Parking Management System cross site scripting — Simple Parking Management System CWE-79 3.5 Low 2022-07-12
CVE-2022-2298 SourceCodester Clinics Patient Management System Login Page index.php sql injection — Clinics Patient Management System CWE-89 7.3 High 2022-07-12
CVE-2022-2297 SourceCodester Clinics Patient Management System unrestricted upload — Clinics Patient Management System CWE-434 6.3 Medium 2022-07-12
CVE-2022-2293 SourceCodester Simple Sales Management System create cross site scripting — Simple Sales Management System CWE-79 3.5 Low 2022-07-12
CVE-2022-2292 SourceCodester Hotel Management System Room Edit Page 1 cross site scripting — Hotel Management System CWE-79 3.5 Low 2022-07-12
CVE-2022-2291 SourceCodester Hotel Management System Search search cross site scripting — Hotel Management System CWE-79 4.3 Medium 2022-07-12
CVE-2022-2214 SourceCodester Library Management System bookdetails.php sql injection — Library Management System CWE-89 6.3 Medium 2022-06-27
CVE-2022-2213 SourceCodester Library Management System cross site scripting — Library Management System CWE-79 3.5 Low 2022-06-27
CVE-2022-2212 SourceCodester Library Management System /card/index.php unrestricted upload — Library Management System CWE-434 6.3 Medium 2022-06-27
CVE-2022-2087 SourceCodester Bank Management System cross site scripting — Bank Management System CWE-79 3.5 Low 2022-06-15
CVE-2022-2086 SourceCodester Bank Management System login.php sql injection — Bank Management System CWE-89 6.3 Medium 2022-06-15
CVE-2022-2020 SourceCodester Prison Management System System Name cross site scripting — Prison Management System CWE-79 2.4 Low 2022-06-07
CVE-2022-2019 SourceCodester Prison Management System New User Creation improper authorization — Prison Management System CWE-285 7.3 High 2022-06-07
CVE-2022-2018 SourceCodester Prison Management System Inmate sql injection — Prison Management System CWE-89 4.7 Medium 2022-06-07
CVE-2022-2017 SourceCodester Prison Management System Visit view_visit.php sql injection — Prison Management System CWE-89 4.7 Medium 2022-06-07
CVE-2022-1980 SourceCodester Product Show Room Site cross site scripting — Product Show Room Site CWE-79 2.4 Low 2022-06-02
CVE-2022-1979 SourceCodester Product Show Room Site p=contact cross site scripting — Product Show Room Site CWE-79 3.5 Low 2022-06-02
CVE-2022-1084 SourceCodester One Church Management System Session userregister.php improper authentication — One Church Management System CWE-287 7.3 High 2022-03-29

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.