Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE IDTitleCVSSSeverityPublished
CVE-2025-9704 SourceCodester Water Billing System viewbill.php sql injection — Water Billing SystemCWE-89 7.3 High2025-08-30
CVE-2025-9702 SourceCodester Simple Cafe Billing System sales_report.php sql injection — Simple Cafe Billing SystemCWE-89 7.3 High2025-08-30
CVE-2025-9701 SourceCodester Simple Cafe Billing System receipt.php sql injection — Simple Cafe Billing SystemCWE-89 7.3 High2025-08-30
CVE-2025-9700 SourceCodester Online Book Store publisher_list.php sql injection — Online Book StoreCWE-89 7.3 High2025-08-30
CVE-2025-9699 SourceCodester Online Polling System Code checklogin.php sql injection — Online Polling System CodeCWE-89 7.3 High2025-08-30
CVE-2025-9690 SourceCodester Advanced School Management System vendordetails sql injection — Advanced School Management SystemCWE-89 6.3 Medium2025-08-30
CVE-2025-9689 SourceCodester Advanced School Management System item_select sql injection — Advanced School Management SystemCWE-89 6.3 Medium2025-08-30
CVE-2025-9660 SourceCodester Bakeshop Online Ordering System passwordrecover.php sql injection — Bakeshop Online Ordering SystemCWE-89 7.3 High2025-08-29
CVE-2025-9476 SourceCodester Human Resource Information System editemployee_process.php unrestricted upload — Human Resource Information SystemCWE-434 7.3 High2025-08-26
CVE-2025-9475 SourceCodester Human Resource Information System editemployee_process.php unrestricted upload — Human Resource Information SystemCWE-434 7.3 High2025-08-26
CVE-2025-9473 SourceCodester Online Bank Management System feedback.php sql injection — Online Bank Management SystemCWE-89 7.3 High2025-08-26
CVE-2025-9306 SourceCodester Advanced School Management System addNotice cross site scripting — Advanced School Management SystemCWE-79 3.5 Low2025-08-21
CVE-2025-9305 SourceCodester Online Bank Management System mnotice.php sql injection — Online Bank Management SystemCWE-89 7.3 High2025-08-21
CVE-2025-9304 SourceCodester Online Bank Management System show.php sql injection — Online Bank Management SystemCWE-89 7.3 High2025-08-21
CVE-2025-9022 SourceCodester Online Bank Management System statements.php sql injection — Online Bank Management SystemCWE-89 7.3 High2025-08-15
CVE-2025-9021 SourceCodester Online Bank Management System transfer.php sql injection — Online Bank Management SystemCWE-89 7.3 High2025-08-15
CVE-2025-8989 SourceCodester COVID 19 Testing Management System edit-phlebotomist.php sql injection — COVID 19 Testing Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8988 SourceCodester COVID 19 Testing Management System bwdates-report-result.php sql injection — COVID 19 Testing Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8987 SourceCodester COVID 19 Testing Management System test-details.php sql injection — COVID 19 Testing Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8986 SourceCodester COVID 19 Testing Management System search-report-result.php sql injection — COVID 19 Testing Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8985 SourceCodester COVID 19 Testing Management System profile.php sql injection — COVID 19 Testing Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8973 SourceCodester Cashier Queuing System Actions.php sql injection — Cashier Queuing SystemCWE-89 7.3 High2025-08-14
CVE-2025-8953 SourceCodester COVID 19 Testing Management System check_availability.php sql injection — COVID 19 Testing Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8926 SourceCodester COVID 19 Testing Management System login.php sql injection — COVID 19 Testing Management SystemCWE-89 7.3 High2025-08-13
CVE-2025-8470 SourceCodester Online Hotel Reservation System deleteroom.php sql injection — Online Hotel Reservation SystemCWE-89 7.3 High2025-08-02
CVE-2025-8469 SourceCodester Online Hotel Reservation System deletegallery.php sql injection — Online Hotel Reservation SystemCWE-89 7.3 High2025-08-02
CVE-2025-7408 SourceCodester Zoo Management System animal_form_template.php cross site scripting — Zoo Management SystemCWE-79 3.5 Low2025-07-10
CVE-2025-7144 SourceCodester Best Salon Management System Admin Profile Page admin-profile.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7143 SourceCodester Best Salon Management System Update Tax Page edit-tax.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7142 SourceCodester Best Salon Management System search-appointment.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.