Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1910

Browse all 1910 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE IDTitleCVSSSeverityPublished
CVE-2025-10623 SourceCodester Hotel Reservation System deleteuser.php sql injection — Hotel Reservation SystemCWE-89 7.3 High2025-09-17
CVE-2025-10621 SourceCodester Hotel Reservation System editroomimage.php sql injection — Hotel Reservation SystemCWE-89 7.3 High2025-09-17
CVE-2025-10617 SourceCodester Online Polling System positions.php sql injection — Online Polling SystemCWE-89 6.3 Medium2025-09-17
CVE-2025-10602 SourceCodester Online Exam Form Submission delete_s1.php sql injection — Online Exam Form SubmissionCWE-89 6.3 Medium2025-09-17
CVE-2025-10601 SourceCodester Online Exam Form Submission index.php sql injection — Online Exam Form SubmissionCWE-89 7.3 High2025-09-17
CVE-2025-10600 SourceCodester Online Exam Form Submission register.php unrestricted upload — Online Exam Form SubmissionCWE-434 7.3 High2025-09-17
CVE-2025-10598 SourceCodester Pet Grooming Management Software search_product.php sql injection — Pet Grooming Management SoftwareCWE-89 7.3 High2025-09-17
CVE-2025-10596 SourceCodester Online Exam Form Submission index.php sql injection — Online Exam Form SubmissionCWE-89 7.3 High2025-09-17
CVE-2025-10595 SourceCodester Online Student File Management System delete_user.php sql injection — Online Student File Management SystemCWE-89 6.3 Medium2025-09-17
CVE-2025-10594 SourceCodester Online Student File Management System delete_student.php sql injection — Online Student File Management SystemCWE-89 6.3 Medium2025-09-17
CVE-2025-10593 SourceCodester Online Student File Management System update_student.php sql injection — Online Student File Management SystemCWE-89 6.3 Medium2025-09-17
CVE-2025-10483 SourceCodester Online Student File Management System save_user.php sql injection — Online Student File Management SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10482 SourceCodester Online Student File Management System index.php sql injection — Online Student File Management SystemCWE-89 7.3 High2025-09-15
CVE-2025-10481 SourceCodester Online Student File Management System remove_file.php sql injection — Online Student File Management SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10480 SourceCodester Online Student File Management System save_file.php unrestricted upload — Online Student File Management SystemCWE-434 6.3 Medium2025-09-15
CVE-2025-10479 SourceCodester Online Student File Management System index.php sql injection — Online Student File Management SystemCWE-89 7.3 High2025-09-15
CVE-2025-10431 SourceCodester Pet Grooming Management Software ajax_represent.php sql injection — Pet Grooming Management SoftwareCWE-89 6.3 Medium2025-09-15
CVE-2025-10430 SourceCodester Pet Grooming Management Software barcode.php sql injection — Pet Grooming Management SoftwareCWE-89 6.3 Medium2025-09-15
CVE-2025-10429 SourceCodester Pet Grooming Management Software ajax_product.php sql injection — Pet Grooming Management SoftwareCWE-89 6.3 Medium2025-09-15
CVE-2025-10428 SourceCodester Pet Grooming Management Software Setting seo_setting.php unrestricted upload — Pet Grooming Management SoftwareCWE-434 6.3 Medium2025-09-15
CVE-2025-10427 SourceCodester Pet Grooming Management Software user.php unrestricted upload — Pet Grooming Management SoftwareCWE-434 6.3 Medium2025-09-15
CVE-2025-10421 SourceCodester Student Grading System update_account.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10420 SourceCodester Student Grading System form137.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10419 SourceCodester Student Grading System del_promote.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10418 SourceCodester Student Grading System view_students.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10410 SourceCodester Link Status Checker index.php server-side request forgery — Link Status CheckerCWE-918 6.3 Medium2025-09-14
CVE-2025-10409 SourceCodester Student Grading System rms.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-14
CVE-2025-10408 SourceCodester Student Grading System edit_user.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-14
CVE-2025-10407 SourceCodester Student Grading System view_user.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-14
CVE-2025-10400 SourceCodester Food Ordering Management System ticket-message.php sql injection — Food Ordering Management SystemCWE-89 6.3 Medium2025-09-14

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.