Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

SourceCodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting SourceCodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 20 results / 1769Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-7746 SourceCodester Web-based Pharmacy Product Management System edit-admin.php sql injection — Web-based Pharmacy Product Management SystemCWE-89 6.3 Medium2026-05-04
CVE-2026-4013 SourceCodester Web-based Pharmacy Product Management System add_admin.php improper authorization — Web-based Pharmacy Product Management SystemCWE-285 6.3 Medium2026-03-12
CVE-2026-3766 SourceCodester Web-based Pharmacy Product Management System edit-profile.php cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 3.5 Low2026-03-08
CVE-2026-3401 SourceCodester Web-based Pharmacy Product Management System session expiration — Web-based Pharmacy Product Management SystemCWE-613 3.1 Low2026-03-02
CVE-2025-4547 SourceCodester Web-based Pharmacy Product Management System Add User Page cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 2.4 Low2025-05-11
CVE-2025-3826 SourceCodester Web-based Pharmacy Product Management System add-supplier.php cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 2.4 Low2025-04-20
CVE-2025-3825 SourceCodester Web-based Pharmacy Product Management System add-category.php cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 2.4 Low2025-04-20
CVE-2025-3824 SourceCodester Web-based Pharmacy Product Management System add-product.php cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 2.4 Low2025-04-20
CVE-2025-3823 SourceCodester Web-based Pharmacy Product Management System add-stock.php cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 2.4 Low2025-04-20
CVE-2025-3822 SourceCodester Web-based Pharmacy Product Management System changepassword.php cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 2.4 Low2025-04-20
CVE-2025-3821 SourceCodester Web-based Pharmacy Product Management System add-admin.php cross site scripting — Web-based Pharmacy Product Management SystemCWE-79 2.4 Low2025-04-20
CVE-2025-3783 SourceCodester Web-based Pharmacy Product Management System add-product.php unrestricted upload — Web-based Pharmacy Product Management SystemCWE-434 6.3 Medium2025-04-18
CVE-2025-3765 SourceCodester Web-based Pharmacy Product Management System edit-photo.php unrestricted upload — Web-based Pharmacy Product Management SystemCWE-434 6.3 Medium2025-04-17
CVE-2025-3764 SourceCodester Web-based Pharmacy Product Management System edit-product.php unrestricted upload — Web-based Pharmacy Product Management SystemCWE-434 6.3 Medium2025-04-17
CVE-2025-3729 SourceCodester Web-based Pharmacy Product Management System Database Backup backup.php os command injection — Web-based Pharmacy Product Management SystemCWE-78 7.3 High2025-04-16
CVE-2025-3697 SourceCodester Web-based Pharmacy Product Management System edit-product.php sql injection — Web-based Pharmacy Product Management SystemCWE-89 6.3 Medium2025-04-16
CVE-2025-3696 SourceCodester Web-based Pharmacy Product Management System search_stock. php sql injection — Web-based Pharmacy Product Management SystemCWE-89 6.3 Medium2025-04-16
CVE-2025-3694 SourceCodester Web-based Pharmacy Product Management System Login sql injection — Web-based Pharmacy Product Management SystemCWE-89 7.3 High2025-04-16
CVE-2025-3383 SourceCodester Web-based Pharmacy Product Management System search_sales.php sql injection — Web-based Pharmacy Product Management SystemCWE-89 7.3 High2025-04-07
CVE-2025-3244 SourceCodester Web-based Pharmacy Product Management System Create User Page add-admin.php unrestricted upload — Web-based Pharmacy Product Management SystemCWE-434 6.3 Medium2025-04-04

This page lists every published CVE security advisory associated with SourceCodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.