Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

SourceCodester — Vulnerabilities & Security Advisories 1806

Browse all 1806 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 13 results / 1806Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2023-3391 SourceCodester Human Resource Management System detailview.php sql injection — Human Resource Management SystemCWE-89 6.3 Medium2023-06-23
CVE-2022-4273 SourceCodester Human Resource Management System Content-Type employee.php unrestricted upload — Human Resource Management SystemCWE-266 7.3 High2022-12-03
CVE-2022-4278 SourceCodester Human Resource Management System employeeadd.php sql injection — Human Resource Management SystemCWE-707 4.7 Medium2022-12-03
CVE-2022-4279 SourceCodester Human Resource Management System employeeview.php cross site scripting — Human Resource Management SystemCWE-707 3.5 Low2022-12-03
CVE-2022-3496 SourceCodester Human Resource Management System Admin Panel employeeadd.php access control — Human Resource Management SystemCWE-266 6.3 Medium2022-10-14
CVE-2022-3497 SourceCodester Human Resource Management System Master List cross site scripting — Human Resource Management SystemCWE-707 3.5 Low2022-10-14
CVE-2022-3492 SourceCodester Human Resource Management System Profile Photo os command injection — Human Resource Management SystemCWE-707 6.3 Medium2022-10-13
CVE-2022-3493 SourceCodester Human Resource Management System Add Employee cross site scripting — Human Resource Management SystemCWE-707 3.5 Low2022-10-13
CVE-2022-3458 SourceCodester Human Resource Management System Image File employeeview.php unrestricted upload — Human Resource Management SystemCWE-266 6.3 Medium2022-10-12
CVE-2022-3470 SourceCodester Human Resource Management System getstatecity.php sql injection — Human Resource Management SystemCWE-707 6.3 Medium2022-10-12
CVE-2022-3471 SourceCodester Human Resource Management System city.php sql injection — Human Resource Management SystemCWE-707 6.3 Medium2022-10-12
CVE-2022-3472 SourceCodester Human Resource Management System city.php sql injection — Human Resource Management SystemCWE-707 6.3 Medium2022-10-12
CVE-2022-3473 SourceCodester Human Resource Management System getstatecity.php sql injection — Human Resource Management SystemCWE-707 6.3 Medium2022-10-12

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.