Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2023-7136 code-projects Record Management System Document Type doctype.php cross site scripting — Record Management SystemCWE-79 2.4 Low2023-12-28
CVE-2023-7135 code-projects Record Management System Offices offices.php cross site scripting — Record Management SystemCWE-79 2.4 Low2023-12-28
CVE-2023-7132 code-projects Intern Membership Management System User Registration cross site scripting — Intern Membership Management SystemCWE-79 3.5 Low2023-12-28
CVE-2023-7131 code-projects Intern Membership Management System User Registration sql injection — Intern Membership Management SystemCWE-89 6.3 Medium2023-12-28
CVE-2023-7129 code-projects Voting System Voters Login sql injection — Voting SystemCWE-89 5.5 Medium2023-12-28
CVE-2023-7128 code-projects Voting System Admin Login sql injection — Voting SystemCWE-89 6.3 Medium2023-12-28
CVE-2023-7127 code-projects Automated Voting System Login sql injection — Automated Voting SystemCWE-89 6.3 Medium2023-12-28
CVE-2023-7126 code-projects Automated Voting System Admin Login sql injection — Automated Voting SystemCWE-89 6.3 Medium2023-12-28
CVE-2023-7124 code-projects E-Commerce Site search.php cross site scripting — E-Commerce SiteCWE-79 4.3 Medium2023-12-28
CVE-2023-7111 code-projects Library Management System index.php sql injection — Library Management SystemCWE-89 6.3 Medium2023-12-26
CVE-2023-7110 code-projects Library Management System login.php sql injection — Library Management SystemCWE-89 7.3 High2023-12-26
CVE-2023-7109 code-projects Library Management System login.php sql injection — Library Management SystemCWE-89 7.3 High2023-12-26
CVE-2023-7108 code-projects E-Commerce Website user_signup.php cross site scripting — E-Commerce WebsiteCWE-79 4.3 Medium2023-12-26
CVE-2023-7107 code-projects E-Commerce Website user_signup.php sql injection — E-Commerce WebsiteCWE-89 7.3 High2023-12-25
CVE-2023-7106 code-projects E-Commerce Website sql injection — E-Commerce WebsiteCWE-89 6.3 Medium2023-12-25
CVE-2023-7105 code-projects E-Commerce Website index_search.php sql injection — E-Commerce WebsiteCWE-89 4.7 Medium2023-12-25
CVE-2023-7097 code-projects Water Billing System addbill.php sql injection — Water Billing SystemCWE-89 6.3 Medium2023-12-25
CVE-2023-7096 code-projects Faculty Management System crud.php sql injection — Faculty Management SystemCWE-89 4.7 Medium2023-12-25
CVE-2023-7075 code-projects Point of Sales and Inventory Management System checkout.php cross site scripting — Point of Sales and Inventory Management SystemCWE-79 3.5 Low2023-12-22
CVE-2023-7057 code-projects Faculty Management System yearlevel.php cross site scripting — Faculty Management SystemCWE-79 3.5 Low2023-12-22
CVE-2023-7056 code-projects Faculty Management System subjects.php cross site scripting — Faculty Management SystemCWE-79 2.4 Low2023-12-22
CVE-2023-6652 code-projects Matrimonial Site register.php register sql injection — Matrimonial SiteCWE-89 7.3 High2023-12-10
CVE-2023-6651 code-projects Matrimonial Site sql injection — Matrimonial SiteCWE-89 7.3 High2023-12-10
CVE-2023-5829 code-projects Admission Management System student_avatar.php unrestricted upload — Admission Management SystemCWE-434 6.3 Medium2023-10-27
CVE-2023-3339 code-projects Agro-School Management System exam-delete.php sql injection — Agro-School Management SystemCWE-89 6.3 Medium2023-06-21
CVE-2023-3310 code-projects Agro-School Management System loaddata.php sql injection — Agro-School Management SystemCWE-89 6.3 Medium2023-06-18
CVE-2023-3274 code-projects Supplier Management System Picture btn_functions.php unrestricted upload — Supplier Management SystemCWE-434 6.3 Medium2023-06-15
CVE-2023-3094 code-projects Agro-School Management System btn_functions.php doUpdateQuestion sql injection — Agro-School Management SystemCWE-89 6.3 Medium2023-06-04
CVE-2023-3062 code-projects Agro-School Management System index.php sql injection — Agro-School Management SystemCWE-89 6.3 Medium2023-06-02
CVE-2023-3061 code-projects Agro-School Management System Attachment Image btn_functions.php unrestricted upload — Agro-School Management SystemCWE-434 6.3 Medium2023-06-02

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.