Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

code-projects — Vulnerabilities & Security Advisories 1264

Browse all 1264 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2026-10620 code-projects Student Admission System index.php sql injection — Student Admission SystemCWE-89 7.3 High2026-06-02
CVE-2026-10299 code-projects Online Hospital Management System viewdoctortimings.php resource injection — Online Hospital Management SystemCWE-99 3.8 Low2026-06-01
CVE-2026-10290 code-projects Hotel and Tourism Reservation System GET Parameter tour.php sql injection — Hotel and Tourism Reservation SystemCWE-89 7.3 High2026-06-01
CVE-2026-10289 code-projects Hotel and Tourism Reservation System tour.php cross site scripting — Hotel and Tourism Reservation SystemCWE-79 4.3 Medium2026-06-01
CVE-2026-10288 code-projects Hotel and Tourism Reservation System Admin Login login.php password_verify improper authentication — Hotel and Tourism Reservation SystemCWE-287 7.3 High2026-06-01
CVE-2026-10262 code-projects Real State Services Login loginuser.php sql injection — Real State ServicesCWE-89 7.3 High2026-06-01
CVE-2026-10243 code-projects Smart Parking System Admin Endpoint missing authentication — Smart Parking SystemCWE-306 7.3 High2026-06-01
CVE-2026-10209 code-projects Online Hospital Management System Appointment appointmentdetail.php sql injection — Online Hospital Management SystemCWE-89 6.3 Medium2026-06-01
CVE-2026-10208 code-projects Online Hospital Management System login_1.php login_user sql injection — Online Hospital Management SystemCWE-89 7.3 High2026-06-01
CVE-2026-10186 code-projects Online Hospital Management System patient.php sql injection — Online Hospital Management SystemCWE-89 7.3 High2026-05-31
CVE-2026-10178 code-projects Online Music Site AdminEditAlbum.php sql injection — Online Music SiteCWE-89 7.3 High2026-05-31
CVE-2026-10171 code-projects Online Music Site AdminUpdateAlbum.php sql injection — Online Music SiteCWE-89 4.7 Medium2026-05-31
CVE-2026-10170 code-projects Visitor Management System phone_0.php sql injection — Visitor Management SystemCWE-89 6.3 Medium2026-05-31
CVE-2026-10110 code-projects Student Details Management System index.php sql injection — Student Details Management SystemCWE-89 7.3 High2026-05-30
CVE-2026-9584 code-projects Project Management System Login chk.php sql injection — Project Management SystemCWE-89 7.3 High2026-05-26
CVE-2026-9451 code-projects Employee Management System applyleaveprocess.php sql injection — Employee Management SystemCWE-89 6.3 Medium2026-05-25
CVE-2026-9450 code-projects Employee Management System psubmit.php sql injection — Employee Management SystemCWE-89 6.3 Medium2026-05-25
CVE-2026-9449 code-projects Employee Management System changepassemp.php sql injection — Employee Management SystemCWE-89 6.3 Medium2026-05-25
CVE-2026-9448 code-projects Employee Management System applyleave.php cross site scripting — Employee Management SystemCWE-79 4.3 Medium2026-05-25
CVE-2026-9419 code-projects Employee Management System empproject.php cross site scripting — Employee Management SystemCWE-79 4.3 Medium2026-05-25
CVE-2026-9418 code-projects Employee Management System changepassemp.php cross site scripting — Employee Management SystemCWE-79 4.3 Medium2026-05-25
CVE-2026-9417 code-projects Employee Management System myprofileup.php cross site scripting — Employee Management SystemCWE-79 4.3 Medium2026-05-25
CVE-2026-9416 code-projects Employee Management System myprofile.php cross site scripting — Employee Management SystemCWE-79 4.3 Medium2026-05-25
CVE-2026-9415 code-projects Employee Management System eloginwel.php cross site scripting — Employee Management SystemCWE-79 4.3 Medium2026-05-25
CVE-2026-8125 code-projects Simple Chat System sendMessage.php sql injection — Simple Chat SystemCWE-89 6.3 Medium2026-05-08
CVE-2026-8098 code-projects Feedback System checklogin.php sql injection — Feedback SystemCWE-89 7.3 High2026-05-07
CVE-2026-7732 code-projects BloodBank Managing System request_blood.php unrestricted upload — BloodBank Managing SystemCWE-434 6.3 Medium2026-05-04
CVE-2026-7731 code-projects BloodBank Managing System get_state.php sql injection — BloodBank Managing SystemCWE-89 6.3 Medium2026-05-04
CVE-2026-7716 code-projects Gym Management System In PHP/Windows NT index.php sql injection — Gym Management System In PHPCWE-89 6.3 Medium2026-05-04
CVE-2026-7632 code-projects Online Hospital Management System viewappointment.php sql injection — Online Hospital Management SystemCWE-89 7.3 High2026-05-02

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.