Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE IDTitleCVSSSeverityPublished
CVE-2024-7364 SourceCodester Tracking Monitoring Management System manage_records.php sql injection — Tracking Monitoring Management SystemCWE-89 6.3 Medium2024-08-01
CVE-2024-7363 SourceCodester Tracking Monitoring Management System manage_person.php sql injection — Tracking Monitoring Management SystemCWE-89 6.3 Medium2024-08-01
CVE-2024-7362 SourceCodester Tracking Monitoring Management System manage_user.php sql injection — Tracking Monitoring Management SystemCWE-89 6.3 Medium2024-08-01
CVE-2024-7361 SourceCodester Tracking Monitoring Management System ajax.php sql injection — Tracking Monitoring Management SystemCWE-89 6.3 Medium2024-08-01
CVE-2024-7360 SourceCodester Tracking Monitoring Management System ajax.php cross-site request forgery — Tracking Monitoring Management SystemCWE-352 4.3 Medium2024-08-01
CVE-2024-7359 SourceCodester Tracking Monitoring Management System ajax.php cross site scripting — Tracking Monitoring Management SystemCWE-79 3.5 Low2024-08-01
CVE-2024-7310 SourceCodester Record Management System sort_user.php cross site scripting — Record Management SystemCWE-79 3.5 Low2024-07-31
CVE-2024-7309 SourceCodester Record Management System entry.php cross site scripting — Record Management SystemCWE-79 3.5 Low2024-07-31
CVE-2024-7308 SourceCodester Establishment Billing Management System view_bill.php sql injection — Establishment Billing Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7307 SourceCodester Establishment Billing Management System manage_billing.php sql injection — Establishment Billing Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7306 SourceCodester Establishment Billing Management System manage_block.php sql injection — Establishment Billing Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7290 SourceCodester Establishment Billing Management System manage_tenant.php sql injection — Establishment Billing Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7289 SourceCodester Establishment Billing Management System manage_payment.php sql injection — Establishment Billing Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7288 SourceCodester Establishment Billing Management System sql injection — Establishment Billing Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7287 SourceCodester Establishment Billing Management System manage_user.php sql injection — Establishment Billing Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7286 SourceCodester Establishment Billing Management System Login sql injection — Establishment Billing Management SystemCWE-89 7.3 High2024-07-31
CVE-2024-7285 SourceCodester Establishment Billing Management System cross site scripting — Establishment Billing Management SystemCWE-79 3.5 Low2024-07-31
CVE-2024-7284 SourceCodester Lot Reservation Management System cross site scripting — Lot Reservation Management SystemCWE-79 3.5 Low2024-07-31
CVE-2024-7283 SourceCodester Lot Reservation Management System manage_user.php sql injection — Lot Reservation Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7282 SourceCodester Lot Reservation Management System manage_model.php sql injection — Lot Reservation Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7281 SourceCodester Lot Reservation Management System sql injection — Lot Reservation Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7280 SourceCodester Lot Reservation Management System view_reserved.php sql injection — Lot Reservation Management SystemCWE-89 6.3 Medium2024-07-31
CVE-2024-7279 SourceCodester Lot Reservation Management System sql injection — Lot Reservation Management SystemCWE-89 7.3 High2024-07-31
CVE-2024-7226 SourceCodester Medicine Tracker System Password Change cross-site request forgery — Medicine Tracker SystemCWE-352 4.3 Medium2024-07-30
CVE-2024-7225 SourceCodester Insurance Management System Edit Insurance Policy Page update_policy cross site scripting — Insurance Management SystemCWE-79 3.5 Low2024-07-30
CVE-2024-7224 SourceCodester Lot Reservation Management System lot_details.php sql injection — Lot Reservation Management SystemCWE-89 6.3 Medium2024-07-30
CVE-2024-7223 SourceCodester Lot Reservation Management System view_model.php sql injection — Lot Reservation Management SystemCWE-89 6.3 Medium2024-07-30
CVE-2024-7222 SourceCodester Lot Reservation Management System home.php sql injection — Lot Reservation Management SystemCWE-89 6.3 Medium2024-07-30
CVE-2024-7221 SourceCodester/Campcodes School Log Management System manage_user.php sql injection — School Log Management SystemCWE-89 6.3 Medium2024-07-30
CVE-2024-7220 SourceCodester/Campcodes School Log Management System print_barcode.php sql injection — School Log Management SystemCWE-89 6.3 Medium2024-07-30

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.