Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2026-7090 code-projects Chat System send_message.php cross site scripting — Chat SystemCWE-79 2.4 Low2026-04-27
CVE-2026-7089 code-projects Home Service System Appointment Booking booking.php cross site scripting — Home Service SystemCWE-79 4.3 Medium2026-04-27
CVE-2026-7070 code-projects Inventory Management System Login sql injection — Inventory Management SystemCWE-89 7.3 High2026-04-27
CVE-2026-7063 code-projects Employee Management System Endpoint eprocess.php sql injection — Employee Management SystemCWE-89 7.3 High2026-04-26
CVE-2026-6202 code-projects Easy Blog Site post.php sql injection — Easy Blog SiteCWE-89 6.3 Medium2026-04-13
CVE-2026-6184 code-projects Simple Content Management System welcome.php cross site scripting — Simple Content Management SystemCWE-79 2.4 Low2026-04-13
CVE-2026-6183 code-projects Simple Content Management System index.php sql injection — Simple Content Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6182 code-projects Simple Content Management System login.php sql injection — Simple Content Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6167 code-projects Faculty Management System subject-print.php sql injection — Faculty Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6166 code-projects Vehicle Showroom Management System UpdateVehicleFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6165 code-projects Vehicle Showroom Management System Login_check.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6164 code-projects Lost and Found Thing Management addcat.php sql injection — Lost and Found Thing ManagementCWE-89 7.3 High2026-04-13
CVE-2026-6163 code-projects Lost and Found Thing Management catageory.php sql injection — Lost and Found Thing ManagementCWE-89 7.3 High2026-04-13
CVE-2026-6161 code-projects Simple ChatBox Endpoint insert.php sql injection — Simple ChatBoxCWE-89 7.3 High2026-04-13
CVE-2026-6160 code-projects Simple ChatBox Endpoint chatbox.sql SimpleChatbox_PHP file information disclosure — Simple ChatBoxCWE-538 5.3 Medium2026-04-13
CVE-2026-6159 code-projects Simple ChatBox Endpoint insert.php cross site scripting — Simple ChatBoxCWE-79 4.3 Medium2026-04-13
CVE-2026-6153 code-projects Vehicle Showroom Management System StaffDetailsFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6152 code-projects Vehicle Showroom Management System StaffAddingFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6151 code-projects Vehicle Showroom Management System PaymentStatusFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6150 code-projects Simple Laundry System checkupdatestatus.php cross site scripting — Simple Laundry SystemCWE-79 4.3 Medium2026-04-13
CVE-2026-6149 code-projects Vehicle Showroom Management System BookVehicleFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6148 code-projects Vehicle Showroom Management System MonthTotalReportUpdateFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-13
CVE-2026-6038 code-projects Vehicle Showroom Management System RegisterCustomerFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-10
CVE-2026-6037 code-projects Vehicle Showroom Management System AddVehicleFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-10
CVE-2026-6036 code-projects Vehicle Showroom Management System VehicleDetailsFunction.php sql injection — Vehicle Showroom Management SystemCWE-89 7.3 High2026-04-10
CVE-2026-6035 code-projects Vehicle Showroom Management System ServiceAndSalesReport.php cross site scripting — Vehicle Showroom Management SystemCWE-79 4.3 Medium2026-04-10
CVE-2026-6034 code-projects Vehicle Showroom Management System ProfitAndLossReport.php cross site scripting — Vehicle Showroom Management SystemCWE-79 4.3 Medium2026-04-10
CVE-2026-6032 code-projects Simple Laundry System checkcheckout.php cross site scripting — Simple Laundry SystemCWE-79 4.3 Medium2026-04-10
CVE-2026-6031 code-projects Simple IT Discussion Forum add-category-function.php sql injection — Simple IT Discussion ForumCWE-89 7.3 High2026-04-10
CVE-2026-6006 code-projects Patient Record Management System edit_hpatient.php sql injection — Patient Record Management SystemCWE-89 6.3 Medium2026-04-10

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.