Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Sourcecodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting Sourcecodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 33 results / 1769Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-12325 SourceCodester Best Salon Management System forgot-password.php sql injection — Best Salon Management SystemCWE-89 7.3 High2025-10-27
CVE-2025-11662 SourceCodester Best Salon Management System booking.php sql injection — Best Salon Management SystemCWE-89 7.3 High2025-10-13
CVE-2025-11615 SourceCodester Best Salon Management System add_invoice.php sql injection — Best Salon Management SystemCWE-89 7.3 High2025-10-11
CVE-2025-11614 SourceCodester Best Salon Management System edit-appointment.php sql injection — Best Salon Management SystemCWE-89 7.3 High2025-10-11
CVE-2025-7144 SourceCodester Best Salon Management System Admin Profile Page admin-profile.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7143 SourceCodester Best Salon Management System Update Tax Page edit-tax.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7142 SourceCodester Best Salon Management System search-appointment.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7141 SourceCodester Best Salon Management System Update Staff Page edit_plan.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7140 SourceCodester Best Salon Management System Update Staff Page edit-staff.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7139 SourceCodester Best Salon Management System Update Customer Details Page edit-customer-detailed.php cross site scripting — Best Salon Management SystemCWE-79 2.4 Low2025-07-07
CVE-2025-7138 SourceCodester Best Salon Management System admin-profile.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-07-07
CVE-2025-7137 SourceCodester Best Salon Management System schedule-staff.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-07-07
CVE-2025-6880 SourceCodester Best Salon Management System edit-tax.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-30
CVE-2025-6879 SourceCodester Best Salon Management System add-tax.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-30
CVE-2025-6878 SourceCodester Best Salon Management System search-appointment.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-30
CVE-2025-6877 SourceCodester Best Salon Management System edit-category.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6876 SourceCodester Best Salon Management System add-category.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6875 SourceCodester Best Salon Management System edit-subscription.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6874 SourceCodester Best Salon Management System add_subscribe.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6862 SourceCodester Best Salon Management System edit_plan.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6861 SourceCodester Best Salon Management System add_plan.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6860 SourceCodester Best Salon Management System staff_commision.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6859 SourceCodester Best Salon Management System pro_sale.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-29
CVE-2025-6609 SourceCodester Best Salon Management System bwdates-reports-details.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-25
CVE-2025-6608 SourceCodester Best Salon Management System edit-services.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-25
CVE-2025-6607 SourceCodester Best Salon Management System stock.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-25
CVE-2025-6606 SourceCodester Best Salon Management System add-services.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-25
CVE-2025-6605 SourceCodester Best Salon Management System edit-staff.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-25
CVE-2025-6604 SourceCodester Best Salon Management System add-staff.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-25
CVE-2025-6583 SourceCodester Best Salon Management System view-appointment.php sql injection — Best Salon Management SystemCWE-89 6.3 Medium2025-06-25

This page lists every published CVE security advisory associated with Sourcecodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.