Browse all 535 CVE security advisories affecting ItsourceCode. AI-powered Chinese analysis, POCs, and references for each vulnerability.
ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-9607 | itsourcecode Courier Management System parcel_list.php sql injection — Courier Management SystemCWE-89 | 6.3 | Medium | 2026-05-27 |
| CVE-2026-9606 | itsourcecode Courier Management System manage_user.php sql injection — Courier Management SystemCWE-89 | 7.3 | High | 2026-05-26 |
| CVE-2026-7822 | itsourcecode Courier Management System print_pdets.php sql injection — Courier Management SystemCWE-89 | 6.3 | Medium | 2026-05-05 |
| CVE-2026-7612 | itsourcecode Courier Management System edit_user.php sql injection — Courier Management SystemCWE-89 | 4.7 | Medium | 2026-05-02 |
| CVE-2026-7592 | itsourcecode Courier Management System edit_staff.php sql injection — Courier Management SystemCWE-89 | 7.3 | High | 2026-05-01 |
| CVE-2026-7077 | itsourcecode Courier Management System edit_parcel.php sql injection — Courier Management SystemCWE-89 | 7.3 | High | 2026-04-27 |
| CVE-2026-7076 | itsourcecode Courier Management System edit_branch.php sql injection — Courier Management SystemCWE-89 | 7.3 | High | 2026-04-27 |
This page lists every published CVE security advisory associated with ItsourceCode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.