Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CodeAstro — Vulnerabilities & Security Advisories 125

Browse all 125 CVE security advisories affecting CodeAstro. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CodeAstro operates as a software development and IT services provider, primarily focusing on custom application development and digital transformation solutions for enterprise clients. Security audits have identified a significant volume of vulnerabilities within its ecosystem, with 122 CVEs currently on record. These flaws predominantly involve remote code execution and cross-site scripting, indicating persistent weaknesses in input validation and session management across various deployed modules. Additionally, several instances of privilege escalation have been documented, suggesting inadequate access control mechanisms in legacy systems. While no single catastrophic breach has been publicly attributed solely to CodeAstro, the high frequency of critical severity ratings highlights systemic issues in their secure development lifecycle. Recent patches have addressed some remote execution vectors, yet the sheer number of outstanding issues necessitates rigorous third-party security assessments to mitigate ongoing risks for dependent organizations.

Found 19 results / 125Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-14900 CodeAstro Real Estate Management System Administrator Endpoint userdelete.php sql injection — Real Estate Management SystemCWE-89 4.7 Medium2025-12-19
CVE-2025-14899 CodeAstro Real Estate Management System Administrator Endpoint stateadd.php sql injection — Real Estate Management SystemCWE-89 4.7 Medium2025-12-19
CVE-2025-14898 CodeAstro Real Estate Management System Administrator Endpoint userbuilderdelete.php sql injection — Real Estate Management SystemCWE-89 4.7 Medium2025-12-18
CVE-2025-14897 CodeAstro Real Estate Management System Administrator Endpoint useragentdelete.php sql injection — Real Estate Management SystemCWE-89 4.7 Medium2025-12-18
CVE-2025-9942 CodeAstro Real Estate Management System submitproperty.php unrestricted upload — Real Estate Management SystemCWE-434 6.3 Medium2025-09-04
CVE-2025-9941 CodeAstro Real Estate Management System register.php unrestricted upload — Real Estate Management SystemCWE-434 6.3 Medium2025-09-04
CVE-2025-9940 CodeAstro Real Estate Management System feature.php cross site scripting — Real Estate Management SystemCWE-79 3.5 Low2025-09-04
CVE-2025-9939 CodeAstro Real Estate Management System propertyview.php cross site scripting — Real Estate Management SystemCWE-79 3.5 Low2025-09-04
CVE-2025-5611 CodeAstro Real Estate Management System submitpropertyupdate.php sql injection — Real Estate Management SystemCWE-89 6.3 Medium2025-06-04
CVE-2025-5610 CodeAstro Real Estate Management System submitpropertydelete.php sql injection — Real Estate Management SystemCWE-89 6.3 Medium2025-06-04
CVE-2025-5583 CodeAstro Real Estate Management System register.php sql injection — Real Estate Management SystemCWE-89 7.3 High2025-06-04
CVE-2025-5582 CodeAstro Real Estate Management System profile.php sql injection — Real Estate Management SystemCWE-89 6.3 Medium2025-06-04
CVE-2025-5581 CodeAstro Real Estate Management System index.php sql injection — Real Estate Management SystemCWE-89 7.3 High2025-06-04
CVE-2025-5580 CodeAstro Real Estate Management System login.php sql injection — Real Estate Management SystemCWE-89 7.3 High2025-06-04
CVE-2024-11058 CodeAstro Real Estate Management System About Us Page aboutedit.php sql injection — Real Estate Management SystemCWE-89 4.7 Medium2024-11-10
CVE-2024-11000 CodeAstro Real Estate Management System About Us Page aboutedit.php unrestricted upload — Real Estate Management SystemCWE-434 4.7 Medium2024-11-08
CVE-2024-10999 CodeAstro Real Estate Management System About Us Page aboutadd.php unrestricted upload — Real Estate Management SystemCWE-434 4.7 Medium2024-11-08
CVE-2024-1103 CodeAstro Real Estate Management System Feedback Form profile.php cross site scripting — Real Estate Management SystemCWE-79 3.5 Low2024-01-31
CVE-2024-0543 CodeAstro Real Estate Management System propertydetail.php sql injection — Real Estate Management SystemCWE-89 6.3 Medium2024-01-15

This page lists every published CVE security advisory associated with CodeAstro. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.