Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2025-7513 code-projects Modern Bag slideupdate.php sql injection — Modern BagCWE-89 7.3 High2025-07-13
CVE-2025-7512 code-projects Modern Bag contact-back.php sql injection — Modern BagCWE-89 7.3 High2025-07-13
CVE-2025-7511 code-projects Chat System update_account.php sql injection — Chat SystemCWE-89 6.3 Medium2025-07-13
CVE-2025-7510 code-projects Modern Bag productadd_back.php sql injection — Modern BagCWE-89 7.3 High2025-07-13
CVE-2025-7509 code-projects Modern Bag slide.php sql injection — Modern BagCWE-89 7.3 High2025-07-13
CVE-2025-7508 code-projects Modern Bag product-update.php sql injection — Modern BagCWE-89 7.3 High2025-07-12
CVE-2025-7478 code-projects Modern Bag category-list.php sql injection — Modern BagCWE-89 7.3 High2025-07-12
CVE-2025-7477 code-projects Simple Car Rental System add_cars.php unrestricted upload — Simple Car Rental SystemCWE-434 4.7 Medium2025-07-12
CVE-2025-7476 code-projects Simple Car Rental System approve.php sql injection — Simple Car Rental SystemCWE-89 7.3 High2025-07-12
CVE-2025-7475 code-projects Simple Car Rental System pay.php sql injection — Simple Car Rental SystemCWE-89 7.3 High2025-07-12
CVE-2025-7474 code-projects Job Diary search.php sql injection — Job DiaryCWE-89 7.3 High2025-07-12
CVE-2025-7471 code-projects Modern Bag login-back.php sql injection — Modern BagCWE-89 7.3 High2025-07-12
CVE-2025-7467 code-projects Modern Bag product-detail.php sql injection — Modern BagCWE-89 7.3 High2025-07-12
CVE-2025-7461 code-projects Modern Bag action.php sql injection — Modern BagCWE-89 7.3 High2025-07-12
CVE-2025-7459 code-projects Mobile Shop EditMobile.php sql injection — Mobile ShopCWE-89 7.3 High2025-07-11
CVE-2025-7413 code-projects Library System profile.php unrestricted upload — Library SystemCWE-434 6.3 Medium2025-07-10
CVE-2025-7412 code-projects Library System profile.php unrestricted upload — Library SystemCWE-434 6.3 Medium2025-07-10
CVE-2025-7411 code-projects LifeStyle Store success.php sql injection — LifeStyle StoreCWE-89 7.3 High2025-07-10
CVE-2025-7410 code-projects LifeStyle Store cart_remove.php sql injection — LifeStyle StoreCWE-89 7.3 High2025-07-10
CVE-2025-7409 code-projects Mobile Shop LoginAsAdmin.php sql injection — Mobile ShopCWE-89 7.3 High2025-07-10
CVE-2025-7211 code-projects LifeStyle Store cart_add.php sql injection — LifeStyle StoreCWE-89 7.3 High2025-07-09
CVE-2025-7210 code-projects/Fabian Ros Library Management System profile_update.php unrestricted upload — Library Management SystemCWE-434 6.3 Medium2025-07-09
CVE-2025-7199 code-projects Library System notapprove.php sql injection — Library SystemCWE-89 7.3 High2025-07-08
CVE-2025-7198 code-projects Jonnys Liquor admin-area.php sql injection — Jonnys LiquorCWE-89 7.3 High2025-07-08
CVE-2025-7197 code-projects Jonnys Liquor delete-row.php sql injection — Jonnys LiquorCWE-89 7.3 High2025-07-08
CVE-2025-7196 code-projects Jonnys Liquor browse.php sql injection — Jonnys LiquorCWE-89 7.3 High2025-07-08
CVE-2025-7191 code-projects Student Enrollment System login.php sql injection — Student Enrollment SystemCWE-89 7.3 High2025-07-08
CVE-2025-7190 code-projects Library Management System student_edit_photo.php unrestricted upload — Library Management SystemCWE-434 6.3 Medium2025-07-08
CVE-2025-7189 code-projects Chat System send_message.php sql injection — Chat SystemCWE-89 6.3 Medium2025-07-08
CVE-2025-7188 code-projects Chat System addmember.php sql injection — Chat SystemCWE-89 6.3 Medium2025-07-08

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.