Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

CVE IDTitleCVSSSeverityPublished
CVE-2024-7219 SourceCodester/Campcodes School Log Management System ajax.php sql injection — School Log Management SystemCWE-89 7.3 High2024-07-30
CVE-2024-7218 SourceCodester/Campcodes School Log Management System ajax.php cross site scripting — School Log Management SystemCWE-79 3.5 Low2024-07-30
CVE-2024-7200 SourceCodester Complaints Report Management System cross site scripting — Complaints Report Management SystemCWE-79 3.5 Low2024-07-29
CVE-2024-7199 SourceCodester Complaints Report Management System manage_user.php sql injection — Complaints Report Management SystemCWE-89 6.3 Medium2024-07-29
CVE-2024-7198 SourceCodester Complaints Report Management System manage_station.php sql injection — Complaints Report Management SystemCWE-89 6.3 Medium2024-07-29
CVE-2024-7197 SourceCodester Complaints Report Management System manage_complaint.php sql injection — Complaints Report Management SystemCWE-89 6.3 Medium2024-07-29
CVE-2024-7196 SourceCodester Complaints Report Management System sql injection — Complaints Report Management SystemCWE-89 7.3 High2024-07-29
CVE-2024-7169 SourceCodester School Fees Payment System ajax.php cross-site request forgery — School Fees Payment SystemCWE-352 4.3 Medium2024-07-28
CVE-2024-7168 SourceCodester School Fees Payment System manage_user.php sql injection — School Fees Payment SystemCWE-89 6.3 Medium2024-07-28
CVE-2024-7167 SourceCodester School Fees Payment System manage_course.php sql injection — School Fees Payment SystemCWE-89 6.3 Medium2024-07-28
CVE-2024-7166 SourceCodester School Fees Payment System receipt.php sql injection — School Fees Payment SystemCWE-89 6.3 Medium2024-07-28
CVE-2024-7165 SourceCodester School Fees Payment System view_payment.php sql injection — School Fees Payment SystemCWE-89 6.3 Medium2024-07-28
CVE-2024-7164 SourceCodester School Fees Payment System sql injection — School Fees Payment SystemCWE-89 7.3 High2024-07-28
CVE-2024-7080 SourceCodester Insurance Management System direct request — Insurance Management SystemCWE-425 5.3 Medium2024-07-24
CVE-2024-7069 SourceCodester Employee and Visitor Gate Pass Logging System sql injection — Employee and Visitor Gate Pass Logging SystemCWE-89 6.3 Medium2024-07-24
CVE-2024-7068 SourceCodester Insurance Management System update_sub_category cross site scripting — Insurance Management SystemCWE-79 3.5 Low2024-07-24
CVE-2024-6969 SourceCodester Clinics Patient Management System get_patient_history.php sql injection — Clinics Patient Management SystemCWE-89 6.3 Medium2024-07-22
CVE-2024-6968 SourceCodester Clinics Patient Management System print_patients_visits.php sql injection — Clinics Patient Management SystemCWE-89 6.3 Medium2024-07-22
CVE-2024-6967 SourceCodester Employee and Visitor Gate Pass Logging System sql injection — Employee and Visitor Gate Pass Logging SystemCWE-89 6.3 Medium2024-07-22
CVE-2024-6955 SourceCodester Record Management System sort2.php cross site scripting — Record Management SystemCWE-79 3.5 Low2024-07-21
CVE-2024-6954 SourceCodester Record Management System sort1.php cross site scripting — Record Management SystemCWE-79 3.5 Low2024-07-21
CVE-2024-6951 SourceCodester Simple Online Book Store System admin_delete.php sql injection — Simple Online Book Store SystemCWE-89 6.3 Medium2024-07-21
CVE-2024-6907 SourceCodester Record Management System sort.php cross site scripting — Record Management SystemCWE-79 3.5 Low2024-07-19
CVE-2024-6906 SourceCodester Record Management System add_leave_non_user.php sql injection — Record Management SystemCWE-89 6.3 Medium2024-07-19
CVE-2024-6905 SourceCodester Record Management System view_info_user.php sql injection — Record Management SystemCWE-89 6.3 Medium2024-07-19
CVE-2024-6904 SourceCodester Record Management System sort2_user.php sql injection — Record Management SystemCWE-89 6.3 Medium2024-07-19
CVE-2024-6903 SourceCodester Record Management System sort1_user.php sql injection — Record Management SystemCWE-89 6.3 Medium2024-07-19
CVE-2024-6902 SourceCodester Record Management System sort_user.php sql injection — Record Management SystemCWE-89 6.3 Medium2024-07-19
CVE-2024-6901 SourceCodester Record Management System entry.php sql injection — Record Management SystemCWE-89 6.3 Medium2024-07-19
CVE-2024-6900 SourceCodester Record Management System edit_emp.php sql injection — Record Management SystemCWE-89 6.3 Medium2024-07-19

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.