Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Sourcecodester — Vulnerabilities & Security Advisories 1769

Browse all 1769 CVE security advisories affecting Sourcecodester. AI-powered Chinese analysis, POCs, and references for each vulnerability.

SourceCodester operates as a repository for free and premium source code, scripts, and web applications, primarily serving developers seeking ready-made solutions for rapid deployment. This business model inherently exposes users to significant security risks, as the platform hosts thousands of projects with varying levels of code review. Historically, vulnerabilities found in these downloads frequently include Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, often stemming from outdated frameworks or unpatched dependencies. Privilege escalation flaws are also common, allowing attackers to bypass authentication mechanisms. While SourceCodester does not typically manage post-download security patches, the sheer volume of recorded CVEs highlights systemic issues in code quality assurance. Users relying on these resources must perform rigorous independent security audits, as the platform’s primary focus remains distribution rather than comprehensive vulnerability management or remediation support.

Found 14 results / 1769Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-6476 SourceCodester Gym Management System cross-site request forgery — Gym Management SystemCWE-352 4.3 Medium2025-06-22
CVE-2025-3151 SourceCodester Gym Management System signup.php sql injection — Gym Management SystemCWE-89 7.3 High2025-04-03
CVE-2022-2842 SourceCodester Gym Management System login.php sql injection — Gym Management SystemCWE-89 7.3 High2022-08-22
CVE-2022-2800 SourceCodester Gym Management System clickjacking — Gym Management SystemCWE-451 4.3 Medium2022-08-12
CVE-2022-2776 SourceCodester Gym Management System delete_user.php denial of service — Gym Management SystemCWE-404 5.4 Medium2022-08-11
CVE-2022-2749 SourceCodester Gym Management System unrestricted upload — Gym Management SystemCWE-434 4.7 Medium2022-08-11
CVE-2022-2745 SourceCodester Gym Management System Add New Trainer add_trainers.php sql injection — Gym Management SystemCWE-89 6.3 Medium2022-08-11
CVE-2022-2744 SourceCodester Gym Management System Background Management add_exercises.php unrestricted upload — Gym Management SystemCWE-434 6.3 Medium2022-08-11
CVE-2022-2728 SourceCodester Gym Management System index.php sql injection — Gym Management SystemCWE-89 6.3 Medium2022-08-09
CVE-2022-2727 SourceCodester Gym Management System login.php sql injection — Gym Management SystemCWE-89 6.3 Medium2022-08-09
CVE-2022-2708 SourceCodester Gym Management System login.php sql injection — Gym Management SystemCWE-89 5.5 Medium2022-08-08
CVE-2022-2703 SourceCodester Gym Management System Exercises Module sql injection — Gym Management SystemCWE-89 6.3 Medium2022-08-08
CVE-2022-2700 SourceCodester Gym Management System GET Parameter sql injection — Gym Management SystemCWE-89 4.7 Medium2022-08-08
CVE-2022-2687 SourceCodester Gym Management System sql injection — Gym Management SystemCWE-89 6.3 Medium2022-08-06

This page lists every published CVE security advisory associated with Sourcecodester. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.