Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 17 results / 1769Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2024-0351 SourceCodester Engineers Online Portal session fixiation — Engineers Online PortalCWE-384 3.1 Low2024-01-09
CVE-2024-0350 SourceCodester Engineers Online Portal session expiration — Engineers Online PortalCWE-613 3.1 Low2024-01-09
CVE-2024-0349 SourceCodester Engineers Online Portal missing secure attribute — Engineers Online PortalCWE-614 3.7 Low2024-01-09
CVE-2024-0348 SourceCodester Engineers Online Portal File Upload resource consumption — Engineers Online PortalCWE-400 4.3 Medium2024-01-09
CVE-2024-0347 SourceCodester Engineers Online Portal signup_teacher.php weak password — Engineers Online PortalCWE-521 3.7 Low2024-01-09
CVE-2024-0260 SourceCodester Engineers Online Portal Password Change change_password_teacher.php session expiration — Engineers Online PortalCWE-613 4.3 Medium2024-01-07
CVE-2024-0182 SourceCodester Engineers Online Portal Admin Login sql injection — Engineers Online PortalCWE-89 7.3 High2024-01-01
CVE-2023-7160 SourceCodester Engineers Online Portal Add Engineer cross site scripting — Engineers Online PortalCWE-79 2.4 Low2023-12-29
CVE-2023-5284 SourceCodester Engineers Online Portal upload_save_student.php unrestricted upload — Engineers Online PortalCWE-434 6.3 Medium2023-09-29
CVE-2023-5283 SourceCodester Engineers Online Portal teacher_signup.php sql injection — Engineers Online PortalCWE-89 6.3 Medium2023-09-29
CVE-2023-5282 SourceCodester Engineers Online Portal seed_message_student.php sql injection — Engineers Online PortalCWE-89 6.3 Medium2023-09-29
CVE-2023-5281 SourceCodester Engineers Online Portal remove_inbox_message.php sql injection — Engineers Online PortalCWE-89 6.3 Medium2023-09-29
CVE-2023-5280 SourceCodester Engineers Online Portal my_students.php sql injection — Engineers Online PortalCWE-89 6.3 Medium2023-09-29
CVE-2023-5279 SourceCodester Engineers Online Portal my_classmates.php sql injection — Engineers Online PortalCWE-89 6.3 Medium2023-09-29
CVE-2023-5278 SourceCodester Engineers Online Portal login.php sql injection — Engineers Online PortalCWE-89 6.3 Medium2023-09-29
CVE-2023-5277 SourceCodester Engineers Online Portal student_avatar.php unrestricted upload — Engineers Online PortalCWE-434 6.3 Medium2023-09-29
CVE-2023-5276 SourceCodester Engineers Online Portal downloadable_student.php sql injection — Engineers Online PortalCWE-89 6.3 Medium2023-09-29

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.