Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE ID Title CVSS Severity Published
CVE-2026-7297 SourceCodester Pizzafy Ecommerce System ajax.php save_user cross site scripting — Pizzafy Ecommerce System CWE-79 2.4 Low 2026-04-28
CVE-2026-7296 SourceCodester Pizzafy Ecommerce System ajax.php save_order cross site scripting — Pizzafy Ecommerce System CWE-79 2.4 Low 2026-04-28
CVE-2026-7295 SourceCodester Pizzafy Ecommerce System ajax.php save_menu cross site scripting — Pizzafy Ecommerce System CWE-79 2.4 Low 2026-04-28
CVE-2026-7294 SourceCodester Pizzafy Ecommerce System index.php save_settings cross site scripting — Pizzafy Ecommerce System CWE-79 2.4 Low 2026-04-28
CVE-2026-7293 SourceCodester Pizzafy Ecommerce System ajax.php delete_category sql injection — Pizzafy Ecommerce System CWE-89 4.7 Medium 2026-04-28
CVE-2026-7283 SourceCodester Pharmacy Sales and Inventory System ajax.php save_expired sql injection — Pharmacy Sales and Inventory System CWE-89 4.7 Medium 2026-04-28
CVE-2026-7282 SourceCodester Pharmacy Sales and Inventory System ajax.php delete_expired sql injection — Pharmacy Sales and Inventory System CWE-89 4.7 Medium 2026-04-28
CVE-2026-7281 SourceCodester Pharmacy Sales and Inventory System index.php supplier cross site scripting — Pharmacy Sales and Inventory System CWE-79 2.4 Low 2026-04-28
CVE-2026-7269 SourceCodester Pharmacy Sales and Inventory System index.php cross site scripting — Pharmacy Sales and Inventory System CWE-79 2.4 Low 2026-04-28
CVE-2026-7268 SourceCodester Pizzafy Ecommerce System ajax.php save_category sql injection — Pizzafy Ecommerce System CWE-89 6.3 Medium 2026-04-28
CVE-2026-7267 SourceCodester Pizzafy Ecommerce System view_prod.php sql injection — Pizzafy Ecommerce System CWE-89 6.3 Medium 2026-04-28
CVE-2026-7266 SourceCodester Pizzafy Ecommerce System ajax.php save_order sql injection — Pizzafy Ecommerce System CWE-89 6.3 Medium 2026-04-28
CVE-2026-7265 SourceCodester Pizzafy Ecommerce System index.php category sql injection — Pizzafy Ecommerce System CWE-89 6.3 Medium 2026-04-28
CVE-2026-7264 SourceCodester Pizzafy Ecommerce System ajax.php get_cart_items sql injection — Pizzafy Ecommerce System CWE-89 6.3 Medium 2026-04-28
CVE-2026-7230 SourceCodester Safety Anger Pad cross site scripting — Safety Anger Pad CWE-79 4.3 Medium 2026-04-28
CVE-2026-7228 SourceCodester Pizzafy Ecommerce System ajax.php get_cart_count sql injection — Pizzafy Ecommerce System CWE-89 7.3 High 2026-04-28
CVE-2026-7227 SourceCodester Pizzafy Ecommerce System ajax.php login sql injection — Pizzafy Ecommerce System CWE-89 7.3 High 2026-04-28
CVE-2026-7226 SourceCodester Pizzafy Ecommerce System ajax.php login2 sql injection — Pizzafy Ecommerce System CWE-89 7.3 High 2026-04-28
CVE-2026-7225 SourceCodester Pizzafy Ecommerce System ajax.php delete_menu sql injection — Pizzafy Ecommerce System CWE-89 7.3 High 2026-04-28
CVE-2026-7224 SourceCodester Pizzafy Ecommerce System ajax.php delete_cart sql injection — Pizzafy Ecommerce System CWE-89 7.3 High 2026-04-28
CVE-2026-7200 SourceCodester Pharmacy Sales and Inventory System index.php cross site scripting — Pharmacy Sales and Inventory System CWE-79 4.3 Medium 2026-04-27
CVE-2026-7199 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27
CVE-2026-7194 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27
CVE-2026-7130 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27
CVE-2026-7129 SourceCodester Pharmacy Sales and Inventory System index.php cross site scripting — Pharmacy Sales and Inventory System CWE-79 4.3 Medium 2026-04-27
CVE-2026-7128 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27
CVE-2026-7127 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27
CVE-2026-7126 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27
CVE-2026-7088 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27
CVE-2026-7087 SourceCodester Pharmacy Sales and Inventory System ajax.php sql injection — Pharmacy Sales and Inventory System CWE-89 7.3 High 2026-04-27

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.