Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2025-12262 code-projects Online Event Judging System edit_criteria.php sql injection — Online Event Judging SystemCWE-89 6.3 Medium2025-10-27
CVE-2025-12256 code-projects Online Event Judging System edit_contestant.php sql injection — Online Event Judging SystemCWE-89 6.3 Medium2025-10-27
CVE-2025-12255 code-projects Online Event Judging System add_contestant.php sql injection — Online Event Judging SystemCWE-89 6.3 Medium2025-10-27
CVE-2025-12254 code-projects Online Event Judging System add_judge.php sql injection — Online Event Judging SystemCWE-89 6.3 Medium2025-10-27
CVE-2025-12252 code-projects Online Event Judging System action.php sql injection — Online Event Judging SystemCWE-89 6.3 Medium2025-10-27
CVE-2025-12244 code-projects Simple E-Banking System register.php cross site scripting — Simple E-Banking SystemCWE-79 4.3 Medium2025-10-27
CVE-2025-12243 code-projects Client Details System GET Parameter welcome.php sql injection — Client Details SystemCWE-89 6.3 Medium2025-10-27
CVE-2025-12238 code-projects Automated Voting System user.php sql injection — Automated Voting SystemCWE-89 6.3 Medium2025-10-27
CVE-2025-11668 code-projects Automated Voting System update_user.php sql injection — Automated Voting SystemCWE-89 4.7 Medium2025-10-13
CVE-2025-11667 code-projects Automated Voting System add_candidate_modal.php. sql injection — Automated Voting SystemCWE-89 6.3 Medium2025-10-13
CVE-2025-11613 code-projects Simple Food Ordering System addcategory.php sql injection — Simple Food Ordering SystemCWE-89 6.3 Medium2025-10-11
CVE-2025-11612 code-projects Simple Food Ordering System addproduct.php sql injection — Simple Food Ordering SystemCWE-89 6.3 Medium2025-10-11
CVE-2025-11609 code-projects Hospital Management System express-session hard-coded key — Hospital Management SystemCWE-321 3.7 Low2025-10-11
CVE-2025-11608 code-projects E-Banking System POST Parameter register.php sql injection — E-Banking SystemCWE-89 7.3 High2025-10-11
CVE-2025-11605 code-projects Client Details System update-profile.php sql injection — Client Details SystemCWE-89 6.3 Medium2025-10-11
CVE-2025-11603 code-projects Simple Food Ordering System editproduct.php sql injection — Simple Food Ordering SystemCWE-89 6.3 Medium2025-10-11
CVE-2025-11600 code-projects Simple Food Ordering System editcategory.php sql injection — Simple Food Ordering SystemCWE-89 6.3 Medium2025-10-11
CVE-2025-11597 code-projects E-Commerce Website product_add_qty.php sql injection — E-Commerce WebsiteCWE-89 6.3 Medium2025-10-11
CVE-2025-11596 code-projects E-Commerce Website delete_order_details.php sql injection — E-Commerce WebsiteCWE-89 7.3 High2025-10-11
CVE-2025-11585 code-projects Project Monitoring System useredit.php sql injection — Project Monitoring SystemCWE-89 7.3 High2025-10-10
CVE-2025-11584 code-projects Online Job Search Engine searchjob.php sql injection — Online Job Search EngineCWE-89 7.3 High2025-10-10
CVE-2025-11583 code-projects Online Job Search Engine postjob.php sql injection — Online Job Search EngineCWE-89 7.3 High2025-10-10
CVE-2025-11582 code-projects Online Job Search Engine registration.php sql injection — Online Job Search EngineCWE-89 7.3 High2025-10-10
CVE-2025-11558 code-projects E-Commerce Website user_index_search.php sql injection — E-Commerce WebsiteCWE-89 7.3 High2025-10-09
CVE-2025-11556 code-projects Simple Leave Manager user.php sql injection — Simple Leave ManagerCWE-89 7.3 High2025-10-09
CVE-2025-11553 code-projects Courier Management System add-courier.php sql injection — Courier Management SystemCWE-89 6.3 Medium2025-10-09
CVE-2025-11552 code-projects Online Complaint Site category.php sql injection — Online Complaint SiteCWE-89 6.3 Medium2025-10-09
CVE-2025-11551 code-projects Student Result Manager Database.java sql injection — Student Result ManagerCWE-89 6.3 Medium2025-10-09
CVE-2025-11530 code-projects Online Complaint Site state.php sql injection — Online Complaint SiteCWE-89 6.3 Medium2025-10-09
CVE-2025-11516 code-projects Online Complaint Site complaint-details.php sql injection — Online Complaint SiteCWE-89 6.3 Medium2025-10-09

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.