Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2024-13033 code-projects Chat System chatroom.php cross site scripting — Chat SystemCWE-79 3.5 Low2024-12-30
CVE-2024-13020 code-projects Chat System chatroom.php sql injection — Chat SystemCWE-89 6.3 Medium2024-12-29
CVE-2024-13019 code-projects Chat System Chat Room Page update_room.php cross site scripting — Chat SystemCWE-79 3.5 Low2024-12-29
CVE-2024-13012 code-projects Hostel Management System registration.php cross site scripting — Hostel Management SystemCWE-79 3.5 Low2024-12-29
CVE-2024-13008 code-projects Responsive Hotel Site newsletter.php sql injection — Responsive Hotel SiteCWE-89 6.3 Medium2024-12-29
CVE-2024-12998 code-projects Online Car Rental System GET Parameter index.php cross site scripting — Online Car Rental SystemCWE-79 4.3 Medium2024-12-28
CVE-2024-12983 code-projects Hospital Management System Edit Doctor Details Page manage-doctors.php cross site scripting — Hospital Management SystemCWE-79 2.4 Low2024-12-27
CVE-2024-12980 code-projects Job Recruitment _all_edits.php fln_update cross site scripting — Job RecruitmentCWE-79 4.3 Medium2024-12-27
CVE-2024-12979 code-projects Job Recruitment _all_edits.php cn_update cross site scripting — Job RecruitmentCWE-79 4.3 Medium2024-12-27
CVE-2024-12978 code-projects Job Recruitment _all_edits.php add_req sql injection — Job RecruitmentCWE-89 7.3 High2024-12-27
CVE-2024-12969 code-projects Hospital Management System Login index.php sql injection — Hospital Management SystemCWE-89 7.3 High2024-12-26
CVE-2024-12968 code-projects Job Recruitment _all_edits.php edit_jobpost sql injection — Job RecruitmentCWE-89 7.3 High2024-12-26
CVE-2024-12967 code-projects Job Recruitment _all_edits.php fln_update sql injection — Job RecruitmentCWE-89 7.3 High2024-12-26
CVE-2024-12966 code-projects Job Recruitment _all_edits.php cn_update sql injection — Job RecruitmentCWE-89 7.3 High2024-12-26
CVE-2024-12963 code-projects Job Recruitment _all_edits.php add_xp sql injection — Job RecruitmentCWE-89 7.3 High2024-12-26
CVE-2024-12962 code-projects Job Recruitment _all_edits.php sql injection — Job RecruitmentCWE-89 7.3 High2024-12-26
CVE-2024-12950 code-projects/projectworlds Travel Management System subcat.php sql injection — Travel Management SystemCWE-89 6.3 Medium2024-12-26
CVE-2024-12949 code-projects Travel Management System package.php sql injection — Travel Management SystemCWE-89 6.3 Medium2024-12-26
CVE-2024-12948 code-projects Travel Management System detail.php sql injection — Travel Management SystemCWE-89 6.3 Medium2024-12-26
CVE-2024-12945 code-projects Simple Car Rental System account.php sql injection — Simple Car Rental SystemCWE-89 7.3 High2024-12-26
CVE-2024-12939 code-projects Job Recruitment _all_edits.php add_edu sql injection — Job RecruitmentCWE-89 6.3 Medium2024-12-26
CVE-2024-12938 code-projects Simple Admin Panel updateOrderStatus.php sql injection — Simple Admin PanelCWE-89 6.3 Medium2024-12-26
CVE-2024-12937 code-projects Simple Admin Panel addVariationController.php sql injection — Simple Admin PanelCWE-89 6.3 Medium2024-12-26
CVE-2024-12936 code-projects Simple Admin Panel catDeleteController.php sql injection — Simple Admin PanelCWE-89 6.3 Medium2024-12-26
CVE-2024-12935 code-projects Simple Admin Panel editItemForm.php sql injection — Simple Admin PanelCWE-89 6.3 Medium2024-12-26
CVE-2024-12934 code-projects Simple Admin Panel updateItemController.php sql injection — Simple Admin PanelCWE-89 6.3 Medium2024-12-26
CVE-2024-12933 code-projects Simple Admin Panel updateItemController.php cross site scripting — Simple Admin PanelCWE-79 3.5 Low2024-12-26
CVE-2024-12932 code-projects Simple Admin Panel addSizeController.php cross site scripting — Simple Admin PanelCWE-79 3.5 Low2024-12-26
CVE-2024-12931 code-projects Simple Admin Panel addCatController.php sql injection — Simple Admin PanelCWE-89 6.3 Medium2024-12-26
CVE-2024-12930 code-projects Simple Admin Panel addCatController.php cross site scripting — Simple Admin PanelCWE-79 3.5 Low2024-12-26

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.