Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2026-5555 code-projects Concert Ticket Reservation System Parameter login.php sql injection — Concert Ticket Reservation SystemCWE-89 7.3 High2026-04-05
CVE-2026-5554 code-projects Concert Ticket Reservation System Parameter process_search.php sql injection — Concert Ticket Reservation SystemCWE-89 7.3 High2026-04-05
CVE-2026-5542 code-projects Simple Laundry System Parameter modstaffinfo.php cross site scripting — Simple Laundry SystemCWE-79 4.3 Medium2026-04-05
CVE-2026-5541 code-projects Simple Laundry System Parameter modmemberinfo.php cross site scripting — Simple Laundry SystemCWE-79 4.3 Medium2026-04-05
CVE-2026-5540 code-projects Simple Laundry System Parameter modifymember.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-04-05
CVE-2026-5539 code-projects Simple Laundry System Parameter modifymember.php cross site scripting — Simple Laundry SystemCWE-79 4.3 Medium2026-04-05
CVE-2026-5257 code-projects Simple Laundry System Parameter delstaffinfo.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-04-01
CVE-2026-5256 code-projects Simple Laundry System Parameter modify.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-04-01
CVE-2026-5255 code-projects Simple Laundry System Parameter delstaffinfo.php cross site scripting — Simple Laundry SystemCWE-79 4.3 Medium2026-04-01
CVE-2026-5240 code-projects BloodBank Managing System admin_state.php cross site scripting — BloodBank Managing SystemCWE-79 4.3 Medium2026-03-31
CVE-2026-5206 code-projects Simple Gym Management System Payment sql injection — Simple Gym Management SystemCWE-89 6.3 Medium2026-03-31
CVE-2026-5198 code-projects Student Membership System Admin Login index.php sql injection — Student Membership SystemCWE-89 7.3 High2026-03-31
CVE-2026-5197 code-projects Student Membership System delete_user.php sql injection — Student Membership SystemCWE-89 6.3 Medium2026-03-31
CVE-2026-5196 code-projects Student Membership System delete_member.php sql injection — Student Membership SystemCWE-89 6.3 Medium2026-03-31
CVE-2026-5195 code-projects Student Membership System User Registration sql injection — Student Membership SystemCWE-89 7.3 High2026-03-31
CVE-2026-5157 code-projects Online Food Ordering System Order order.php cross site scripting — Online Food Ordering SystemCWE-79 4.3 Medium2026-03-30
CVE-2026-5150 code-projects Accounting System Parameter viewin_costumer.php sql injection — Accounting SystemCWE-89 7.3 High2026-03-30
CVE-2026-5106 code-projects Exam Form Submission update_fst.php cross site scripting — Exam Form SubmissionCWE-79 2.4 Low2026-03-30
CVE-2026-5041 code-projects Chamber of Commerce Membership Management System pageMail.php fwrite command injection — Chamber of Commerce Membership Management SystemCWE-77 4.7 Medium2026-03-29
CVE-2026-5035 code-projects Accounting System Parameter view_work.php sql injection — Accounting SystemCWE-89 7.3 High2026-03-29
CVE-2026-5034 code-projects Accounting System Parameter edit_costumer.php sql injection — Accounting SystemCWE-89 7.3 High2026-03-29
CVE-2026-5033 code-projects Accounting System Parameter view_costumer.php sql injection — Accounting SystemCWE-89 7.3 High2026-03-29
CVE-2026-5019 code-projects Simple Food Order System Parameter all-orders.php sql injection — Simple Food Order SystemCWE-89 7.3 High2026-03-28
CVE-2026-5018 code-projects Simple Food Order System Parameter register-router.php sql injection — Simple Food Order SystemCWE-89 7.3 High2026-03-28
CVE-2026-5017 code-projects Simple Food Order System Parameter all-tickets.php sql injection — Simple Food Order SystemCWE-89 7.3 High2026-03-28
CVE-2026-4972 code-projects Online Reviewer System btn_functions.php cross site scripting — Online Reviewer SystemCWE-79 2.4 Low2026-03-27
CVE-2026-4970 code-projects Social Networking Site Endpoint delete_photos.php sql injection — Social Networking SiteCWE-89 6.3 Medium2026-03-27
CVE-2026-4969 code-projects Social Networking Site Alert home.php cross site scripting — Social Networking SiteCWE-79 3.5 Low2026-03-27
CVE-2026-4909 code-projects Exam Form Submission update_s7.php cross site scripting — Exam Form SubmissionCWE-79 2.4 Low2026-03-27
CVE-2026-4908 code-projects Simple Laundry System Parameter modstaffinfo.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-03-27

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.