Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2025-14640 code-projects Student File Management System save_student.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-14
CVE-2025-14623 code-projects Student File Management System update_student.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-13
CVE-2025-14622 code-projects Student File Management System save_user.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-13
CVE-2025-14621 code-projects Student File Management System update_user.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-13
CVE-2025-14620 code-projects Student File Management System login_query.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-13
CVE-2025-14619 code-projects Student File Management System login_query.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-13
CVE-2025-14590 code-projects Prison Management System search1.php sql injection — Prison Management SystemCWE-89 7.3 High2025-12-13
CVE-2025-14589 code-projects Prison Management System search.php sql injection — Prison Management SystemCWE-89 6.3 Medium2025-12-13
CVE-2025-14537 code-projects Class and Exam Timetable Management preview7.php sql injection — Class and Exam Timetable ManagementCWE-89 7.3 High2025-12-11
CVE-2025-14536 code-projects Class and Exam Timetable Management Login index.php sql injection — Class and Exam Timetable ManagementCWE-89 7.3 High2025-12-11
CVE-2025-14531 code-projects Rental Management System Log Transaction.java crlf injection — Rental Management SystemCWE-93 4.3 Medium2025-12-11
CVE-2025-14285 code-projects Employee Profile Management System edit_personnel.php sql injection — Employee Profile Management SystemCWE-89 7.3 High2025-12-09
CVE-2025-14251 code-projects Online Ordering System Admin Login admin sql injection — Online Ordering SystemCWE-89 7.3 High2025-12-08
CVE-2025-14250 code-projects Online Ordering System user_contact.php sql injection — Online Ordering SystemCWE-89 7.3 High2025-12-08
CVE-2025-14249 code-projects Online Ordering System user_school.php sql injection — Online Ordering SystemCWE-89 7.3 High2025-12-08
CVE-2025-14248 code-projects Simple Shopping Cart adminlogin.php sql injection — Simple Shopping CartCWE-89 7.3 High2025-12-08
CVE-2025-14247 code-projects Simple Shopping Cart additems.php sql injection — Simple Shopping CartCWE-89 6.3 Medium2025-12-08
CVE-2025-14246 code-projects Simple Shopping Cart settings.php sql injection — Simple Shopping CartCWE-89 6.3 Medium2025-12-08
CVE-2025-14230 code-projects Daily Time Recording System add_payroll.php sql injection — Daily Time Recording SystemCWE-89 6.3 Medium2025-12-08
CVE-2025-14223 code-projects Simple Leave Manager request.php sql injection — Simple Leave ManagerCWE-89 7.3 High2025-12-08
CVE-2025-14222 code-projects Employee Profile Management System print_personnel_report.php sql injection — Employee Profile Management SystemCWE-89 6.3 Medium2025-12-08
CVE-2025-14218 code-projects Currency Exchange System editotheraccount.php sql injection — Currency Exchange SystemCWE-89 7.3 High2025-12-08
CVE-2025-14217 code-projects Currency Exchange System edittrns.php sql injection — Currency Exchange SystemCWE-89 7.3 High2025-12-08
CVE-2025-14216 code-projects Currency Exchange System viewserial.php sql injection — Currency Exchange SystemCWE-89 7.3 High2025-12-08
CVE-2025-14215 code-projects Currency Exchange System edit.php sql injection — Currency Exchange SystemCWE-89 7.3 High2025-12-08
CVE-2025-14205 code-projects Chamber of Commerce Membership Management System Your Info membership_profile.php cross site scripting — Chamber of Commerce Membership Management SystemCWE-79 2.4 Low2025-12-07
CVE-2025-14203 code-projects Question Paper Generator selectquestionuser.php sql injection — Question Paper GeneratorCWE-89 6.3 Medium2025-12-07
CVE-2025-14195 code-projects Employee Profile Management System add_file_query.php unrestricted upload — Employee Profile Management SystemCWE-434 6.3 Medium2025-12-07
CVE-2025-14194 code-projects Employee Profile Management System view_personnel.php cross site scripting — Employee Profile Management SystemCWE-79 3.5 Low2025-12-07
CVE-2025-14193 code-projects Employee Profile Management System view_personnel.php sql injection — Employee Profile Management SystemCWE-89 6.3 Medium2025-12-07

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.