Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 22 results / 1769Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-8117 SourceCodester Pizzafy Ecommerce System index.php cross site scripting — Pizzafy Ecommerce SystemCWE-79 4.3 Medium2026-05-07
CVE-2026-7410 SourceCodester Pizzafy Ecommerce System ajax.php add_to_cart sql injection — Pizzafy Ecommerce SystemCWE-89 6.3 Medium2026-04-29
CVE-2026-7409 SourceCodester Pizzafy Ecommerce System ajax.php save_user sql injection — Pizzafy Ecommerce SystemCWE-89 4.7 Medium2026-04-29
CVE-2026-7408 SourceCodester Pizzafy Ecommerce System ajax.php save_menu sql injection — Pizzafy Ecommerce SystemCWE-89 4.7 Medium2026-04-29
CVE-2026-7407 SourceCodester Pizzafy Ecommerce System Setting ajax.php save_settings sql injection — Pizzafy Ecommerce SystemCWE-89 4.7 Medium2026-04-29
CVE-2026-7394 SourceCodester Pizzafy Ecommerce System GET Parameter view_order.php sql injection — Pizzafy Ecommerce SystemCWE-89 4.7 Medium2026-04-29
CVE-2026-7393 SourceCodester Pizzafy Ecommerce System File Extension admin_class_novo.php save_menu unrestricted upload — Pizzafy Ecommerce SystemCWE-434 4.7 Medium2026-04-29
CVE-2026-7297 SourceCodester Pizzafy Ecommerce System ajax.php save_user cross site scripting — Pizzafy Ecommerce SystemCWE-79 2.4 Low2026-04-28
CVE-2026-7296 SourceCodester Pizzafy Ecommerce System ajax.php save_order cross site scripting — Pizzafy Ecommerce SystemCWE-79 2.4 Low2026-04-28
CVE-2026-7295 SourceCodester Pizzafy Ecommerce System ajax.php save_menu cross site scripting — Pizzafy Ecommerce SystemCWE-79 2.4 Low2026-04-28
CVE-2026-7294 SourceCodester Pizzafy Ecommerce System index.php save_settings cross site scripting — Pizzafy Ecommerce SystemCWE-79 2.4 Low2026-04-28
CVE-2026-7293 SourceCodester Pizzafy Ecommerce System ajax.php delete_category sql injection — Pizzafy Ecommerce SystemCWE-89 4.7 Medium2026-04-28
CVE-2026-7268 SourceCodester Pizzafy Ecommerce System ajax.php save_category sql injection — Pizzafy Ecommerce SystemCWE-89 6.3 Medium2026-04-28
CVE-2026-7267 SourceCodester Pizzafy Ecommerce System view_prod.php sql injection — Pizzafy Ecommerce SystemCWE-89 6.3 Medium2026-04-28
CVE-2026-7266 SourceCodester Pizzafy Ecommerce System ajax.php save_order sql injection — Pizzafy Ecommerce SystemCWE-89 6.3 Medium2026-04-28
CVE-2026-7265 SourceCodester Pizzafy Ecommerce System index.php category sql injection — Pizzafy Ecommerce SystemCWE-89 6.3 Medium2026-04-28
CVE-2026-7264 SourceCodester Pizzafy Ecommerce System ajax.php get_cart_items sql injection — Pizzafy Ecommerce SystemCWE-89 6.3 Medium2026-04-28
CVE-2026-7228 SourceCodester Pizzafy Ecommerce System ajax.php get_cart_count sql injection — Pizzafy Ecommerce SystemCWE-89 7.3 High2026-04-28
CVE-2026-7227 SourceCodester Pizzafy Ecommerce System ajax.php login sql injection — Pizzafy Ecommerce SystemCWE-89 7.3 High2026-04-28
CVE-2026-7226 SourceCodester Pizzafy Ecommerce System ajax.php login2 sql injection — Pizzafy Ecommerce SystemCWE-89 7.3 High2026-04-28
CVE-2026-7225 SourceCodester Pizzafy Ecommerce System ajax.php delete_menu sql injection — Pizzafy Ecommerce SystemCWE-89 7.3 High2026-04-28
CVE-2026-7224 SourceCodester Pizzafy Ecommerce System ajax.php delete_cart sql injection — Pizzafy Ecommerce SystemCWE-89 7.3 High2026-04-28

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.