Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 19 results / 1769Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-2177 SourceCodester Prison Management System Login session fixiation — Prison Management SystemCWE-384 7.3 High2026-02-08
CVE-2024-7813 SourceCodester Prison Management System Profile Image insufficiently protected credentials — Prison Management SystemCWE-522 5.3 Medium2024-08-15
CVE-2024-4645 SourceCodester Prison Management System changepassword.php cross site scripting — Prison Management SystemCWE-79 3.5 Low2024-05-08
CVE-2024-4644 SourceCodester Prison Management System changepassword.php cross site scripting — Prison Management SystemCWE-79 3.5 Low2024-05-08
CVE-2024-4528 SourceCodester Prison Management System user-record.php cross site scripting — Prison Management SystemCWE-79 2.4 Low2024-05-06
CVE-2024-4512 SourceCodester Prison Management System edit-profile.php cross site scripting — Prison Management SystemCWE-79 3.5 Low2024-05-06
CVE-2024-4500 SourceCodester Prison Management System edit-photo.php unrestricted upload — Prison Management SystemCWE-434 6.3 Medium2024-05-05
CVE-2024-3443 SourceCodester Prison Management System apply_leave.php cross site scripting — Prison Management SystemCWE-79 3.5 Low2024-04-08
CVE-2024-3442 SourceCodester Prison Management System delete_leave.php sql injection — Prison Management SystemCWE-89 6.3 Medium2024-04-08
CVE-2024-3441 SourceCodester Prison Management System edit-profile.php sql injection — Prison Management SystemCWE-89 6.3 Medium2024-04-08
CVE-2024-3440 SourceCodester Prison Management System edit_profile.php sql injection — Prison Management SystemCWE-89 4.7 Medium2024-04-08
CVE-2024-3439 SourceCodester Prison Management System login.php sql injection — Prison Management SystemCWE-89 7.3 High2024-04-08
CVE-2024-3438 SourceCodester Prison Management System login.php sql injection — Prison Management SystemCWE-89 7.3 High2024-04-08
CVE-2024-3437 SourceCodester Prison Management System Avatar add-admin.php unrestricted upload — Prison Management SystemCWE-434 7.3 High2024-04-08
CVE-2024-3436 SourceCodester Prison Management System Avatar edit-photo.php unrestricted upload — Prison Management SystemCWE-434 6.3 Medium2024-04-07
CVE-2022-2020 SourceCodester Prison Management System System Name cross site scripting — Prison Management SystemCWE-79 2.4 Low2022-06-07
CVE-2022-2019 SourceCodester Prison Management System New User Creation improper authorization — Prison Management SystemCWE-285 7.3 High2022-06-07
CVE-2022-2018 SourceCodester Prison Management System Inmate sql injection — Prison Management SystemCWE-89 4.7 Medium2022-06-07
CVE-2022-2017 SourceCodester Prison Management System Visit view_visit.php sql injection — Prison Management SystemCWE-89 4.7 Medium2022-06-07

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.