Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2025-13583 code-projects Question Paper Generator POST Parameter signupscript.php sql injection — Question Paper GeneratorCWE-89 7.3 High2025-11-24
CVE-2025-13582 code-projects Jonnys Liquor GET Parameter detail.php sql injection — Jonnys LiquorCWE-89 7.3 High2025-11-24
CVE-2025-13580 code-projects Library System mail.php sql injection — Library SystemCWE-89 6.3 Medium2025-11-24
CVE-2025-13579 code-projects Library System return.php sql injection — Library SystemCWE-89 6.3 Medium2025-11-24
CVE-2025-13578 code-projects Library System Login index.php sql injection — Library SystemCWE-89 7.3 High2025-11-24
CVE-2025-13576 code-projects Blog Site admin.php improper authorization — Blog SiteCWE-285 6.3 Medium2025-11-24
CVE-2025-13575 code-projects Blog Site Category blog.php category_exists sql injection — Blog SiteCWE-89 6.3 Medium2025-11-24
CVE-2025-13574 code-projects Online Bidding System addcategory.php categoryadd unrestricted upload — Online Bidding SystemCWE-434 4.7 Medium2025-11-24
CVE-2025-13571 code-projects Simple Food Ordering System listorder.php sql injection — Simple Food Ordering SystemCWE-89 6.3 Medium2025-11-23
CVE-2025-13449 code-projects Online Shop Project login.php sql injection — Online Shop ProjectCWE-89 7.3 High2025-11-20
CVE-2025-13396 code-projects Courier Management System add-office.php sql injection — Courier Management SystemCWE-89 6.3 Medium2025-11-19
CVE-2025-13323 code-projects Simple Pizza Ordering System listorder.php sql injection — Simple Pizza Ordering SystemCWE-89 7.3 High2025-11-18
CVE-2025-13303 code-projects Courier Management System search-edit.php sql injection — Courier Management SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13302 code-projects Courier Management System add-new-officer.php sql injection — Courier Management SystemCWE-89 4.7 Medium2025-11-17
CVE-2025-13290 code-projects Simple Food Ordering System saveorder.php sql injection — Simple Food Ordering SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13279 code-projects Nero Social Networking Site profilefriends.php sql injection — Nero Social Networking SiteCWE-89 6.3 Medium2025-11-17
CVE-2025-13277 code-projects Nero Social Networking Site friendsphoto.php sql injection — Nero Social Networking SiteCWE-89 7.3 High2025-11-17
CVE-2025-13245 code-projects Student Information System editprofile.php cross site scripting — Student Information SystemCWE-79 3.5 Low2025-11-16
CVE-2025-13244 code-projects Student Information System register.php cross site scripting — Student Information SystemCWE-79 4.3 Medium2025-11-16
CVE-2025-13243 code-projects Student Information System editprofile.php sql injection — Student Information SystemCWE-89 6.3 Medium2025-11-16
CVE-2025-13242 code-projects Student Information System register.php sql injection — Student Information SystemCWE-89 7.3 High2025-11-16
CVE-2025-13241 code-projects Student Information System index.php sql injection — Student Information SystemCWE-89 7.3 High2025-11-16
CVE-2025-13240 code-projects Student Information System searchquery.php sql injection — Student Information SystemCWE-89 7.3 High2025-11-16
CVE-2025-13203 code-projects Simple Cafe Ordering System addmem.php sql injection — Simple Cafe Ordering SystemCWE-89 7.3 High2025-11-15
CVE-2025-13202 code-projects Simple Cafe Ordering System add_to_cart cross site scripting — Simple Cafe Ordering SystemCWE-79 3.5 Low2025-11-15
CVE-2025-13201 code-projects Simple Cafe Ordering System login.php sql injection — Simple Cafe Ordering SystemCWE-89 7.3 High2025-11-15
CVE-2025-13199 code-projects Email Logging Interface signup.cpp path traversal — Email Logging InterfaceCWE-24 5.3 Medium2025-11-15
CVE-2025-13170 code-projects Simple Online Hotel Reservation System edit_account.php sql injection — Simple Online Hotel Reservation SystemCWE-89 7.3 High2025-11-14
CVE-2025-13169 code-projects Simple Online Hotel Reservation System add_query_reserve.php sql injection — Simple Online Hotel Reservation SystemCWE-89 7.3 High2025-11-14
CVE-2025-13076 code-projects Responsive Hotel Site usersetting.php sql injection — Responsive Hotel SiteCWE-89 4.7 Medium2025-11-12

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.