Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE IDTitleCVSSSeverityPublished
CVE-2025-10421 SourceCodester Student Grading System update_account.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10420 SourceCodester Student Grading System form137.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10419 SourceCodester Student Grading System del_promote.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10418 SourceCodester Student Grading System view_students.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-15
CVE-2025-10410 SourceCodester Link Status Checker index.php server-side request forgery — Link Status CheckerCWE-918 6.3 Medium2025-09-14
CVE-2025-10409 SourceCodester Student Grading System rms.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-14
CVE-2025-10408 SourceCodester Student Grading System edit_user.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-14
CVE-2025-10407 SourceCodester Student Grading System view_user.php sql injection — Student Grading SystemCWE-89 6.3 Medium2025-09-14
CVE-2025-10400 SourceCodester Food Ordering Management System ticket-message.php sql injection — Food Ordering Management SystemCWE-89 6.3 Medium2025-09-14
CVE-2025-10396 SourceCodester Pet Grooming Management Software edit_role.php sql injection — Pet Grooming Management SoftwareCWE-89 7.3 High2025-09-14
CVE-2025-10117 SourceCodester Simple To-Do List System Add New Task fetch_tasks.php cross site scripting — Simple To-Do List SystemCWE-79 3.5 Low2025-09-09
CVE-2025-10100 SourceCodester Simple Forum Discussion System admin_class.php sql injection — Simple Forum Discussion SystemCWE-89 7.3 High2025-09-08
CVE-2025-10088 SourceCodester Time Tracker index.html cross site scripting — Time TrackerCWE-79 3.5 Low2025-09-08
CVE-2025-10087 SourceCodester Pet Grooming Management Software profit_report.php sql injection — Pet Grooming Management SoftwareCWE-89 4.7 Medium2025-09-08
CVE-2025-10085 SourceCodester Pet Grooming Management Software manage_website.php unrestricted upload — Pet Grooming Management SoftwareCWE-434 6.3 Medium2025-09-08
CVE-2025-10083 SourceCodester Pet Grooming Management Software profile.php unrestricted upload — Pet Grooming Management SoftwareCWE-434 6.3 Medium2025-09-08
CVE-2025-10082 SourceCodester Online Polling System manage-admins.php sql injection — Online Polling SystemCWE-89 7.3 High2025-09-08
CVE-2025-10081 SourceCodester Pet Management System profile.php unrestricted upload — Pet Management SystemCWE-434 4.7 Medium2025-09-08
CVE-2025-10078 SourceCodester Online Polling System candidates.php sql injection — Online Polling SystemCWE-89 7.3 High2025-09-08
CVE-2025-10077 SourceCodester Online Polling System registeracc.php sql injection — Online Polling SystemCWE-89 7.3 High2025-09-08
CVE-2025-10076 SourceCodester Online Polling System manage-profile.php sql injection — Online Polling SystemCWE-89 7.3 High2025-09-08
CVE-2025-10075 SourceCodester Online Polling System manage-profile.php cross site scripting — Online Polling SystemCWE-79 3.5 Low2025-09-08
CVE-2025-9833 SourceCodester Online Farm Management System login.php sql injection — Online Farm Management SystemCWE-89 7.3 High2025-09-02
CVE-2025-9832 SourceCodester Food Ordering Management System register-router.php sql injection — Food Ordering Management SystemCWE-89 7.3 High2025-09-02
CVE-2025-9790 SourceCodester Hotel Reservation System updateabout.php sql injection — Hotel Reservation SystemCWE-89 7.3 High2025-09-01
CVE-2025-9789 SourceCodester Online Hotel Reservation System edituser.php sql injection — Online Hotel Reservation SystemCWE-89 7.3 High2025-09-01
CVE-2025-9788 SourceCodester/Campcodes School Log Management System admin_class.php sql injection — School Log Management SystemCWE-89 7.3 High2025-09-01
CVE-2025-9771 SourceCodester Eye Clinic Management System search_index_Diagnosis.php sql injection — Eye Clinic Management SystemCWE-89 7.3 High2025-09-01
CVE-2025-9706 SourceCodester Water Billing System edit.php sql injection — Water Billing SystemCWE-89 7.3 High2025-08-30
CVE-2025-9705 SourceCodester Water Billing System paybill.php sql injection — Water Billing SystemCWE-89 7.3 High2025-08-30

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.