Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1985

Browse all 1985 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 15 results / 1985 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-92385 SourceCodester Online Food Ordering System Category Update update_category.php cross site scripting — Online Food Ordering System CWE-79 2.4 Low 2026-09-16
CVE-2026-90855 SourceCodester/katojkalemba Online Food Ordering System order.php sql injection — Online Food Ordering System CWE-89 7.3 High 2026-09-15
CVE-2026-90854 SourceCodester/katojkalemba Online Food Ordering System category-foods.php sql injection — Online Food Ordering System CWE-89 7.3 High 2026-09-15
CVE-2026-10694 SourceCodester Online Food Ordering System index.php include file inclusion — Online Food Ordering System CWE-73 7.3 High 2026-06-03
CVE-2026-5811 SourceCodester Online Food Ordering System POST Parameter Actions.php save_product logic error — Online Food Ordering System CWE-840 5.4 Medium 2026-04-08
CVE-2025-2387 SourceCodester Online Food Ordering System ajax.php sql injection — Online Food Ordering System CWE-89 7.3 High 2025-03-17
CVE-2024-8604 SourceCodester Online Food Ordering System Create an Account Page index.php cross site scripting — Online Food Ordering System CWE-79 4.3 Medium 2024-09-09
CVE-2023-1432 SourceCodester Online Food Ordering System POST Request access control — Online Food Ordering System CWE-284 7.3 High 2023-03-16
CVE-2023-0332 SourceCodester Online Food Ordering System manage_user.php sql injection — Online Food Ordering System CWE-89 7.3 High 2023-01-17
CVE-2023-0305 SourceCodester Online Food Ordering System Login Module admin_class.php sql injection — Online Food Ordering System CWE-89 6.3 Medium 2023-01-15
CVE-2023-0304 SourceCodester Online Food Ordering System Signup Module admin_class.php sql injection — Online Food Ordering System CWE-89 6.3 Medium 2023-01-15
CVE-2023-0303 SourceCodester Online Food Ordering System view_prod.php sql injection — Online Food Ordering System CWE-89 6.3 Medium 2023-01-15
CVE-2023-0258 SourceCodester Online Food Ordering System Category List cross site scripting — Online Food Ordering System CWE-79 2.4 Low 2023-01-12
CVE-2023-0257 SourceCodester Online Food Ordering System Menu Form unrestricted upload — Online Food Ordering System CWE-434 4.7 Medium 2023-01-12
CVE-2023-0256 SourceCodester Online Food Ordering System Login Page sql injection — Online Food Ordering System CWE-89 6.3 Medium 2023-01-12

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.