Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2025-11094 code-projects E-Commerce Website admin_product_details.php sql injection — E-Commerce WebsiteCWE-89 7.3 High2025-09-28
CVE-2025-11074 code-projects Project Monitoring System login.php sql injection — Project Monitoring SystemCWE-89 7.3 High2025-09-27
CVE-2025-11066 code-projects Online Bidding System bidlist.php sql injection — Online Bidding SystemCWE-89 7.3 High2025-09-27
CVE-2025-11040 code-projects Hostel Management System index.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-26
CVE-2025-11037 code-projects E-Commerce Website admin_index_search.php sql injection — E-Commerce WebsiteCWE-89 7.3 High2025-09-26
CVE-2025-11036 code-projects E-Commerce Website admin_account_update.php sql injection — E-Commerce WebsiteCWE-89 7.3 High2025-09-26
CVE-2025-10842 code-projects Online Bidding System wew.php sql injection — Online Bidding SystemCWE-89 7.3 High2025-09-23
CVE-2025-10841 code-projects Online Bidding System weweee.php sql injection — Online Bidding SystemCWE-89 7.3 High2025-09-23
CVE-2025-10837 code-projects Simple Food Ordering System order.php cross site scripting — Simple Food Ordering SystemCWE-79 3.5 Low2025-09-23
CVE-2025-10813 code-projects Hostel Management System index.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-22
CVE-2025-10812 code-projects Hostel Management System index.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-22
CVE-2025-10811 code-projects Hostel Management System index.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-22
CVE-2025-10802 code-projects Online Bidding System remove.php sql injection — Online Bidding SystemCWE-89 7.3 High2025-09-22
CVE-2025-10799 code-projects Hostel Management System index.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-22
CVE-2025-10798 code-projects Hostel Management System index.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-22
CVE-2025-10797 code-projects Hostel Management System index.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-22
CVE-2025-10796 code-projects Hostel Management System login.php sql injection — Hostel Management SystemCWE-89 7.3 High2025-09-22
CVE-2025-10795 code-projects Online Bidding System bidupdate.php sql injection — Online Bidding SystemCWE-89 7.3 High2025-09-22
CVE-2025-10793 code-projects E-Commerce Website admin_account_delete.php sql injection — E-Commerce WebsiteCWE-89 7.3 High2025-09-22
CVE-2025-10791 code-projects Online Bidding System index.php sql injection — Online Bidding SystemCWE-89 7.3 High2025-09-22
CVE-2025-10104 code-projects Online Event Judging System review_search.php sql injection — Online Event Judging SystemCWE-89 7.3 High2025-09-08
CVE-2025-10103 code-projects Online Event Judging System home.php sql injection — Online Event Judging SystemCWE-89 7.3 High2025-09-08
CVE-2025-10102 code-projects Online Event Judging System index.php sql injection — Online Event Judging SystemCWE-89 7.3 High2025-09-08
CVE-2025-9929 code-projects Responsive Blog Site blogs_view.php cross site scripting — Responsive Blog SiteCWE-79 2.4 Low2025-09-03
CVE-2025-9921 code-projects POS Pharmacy System products.php cross site scripting — POS Pharmacy SystemCWE-79 2.4 Low2025-09-03
CVE-2025-9845 code-projects Fruit Shop Management System products.php cross site scripting — Fruit Shop Management SystemCWE-79 3.5 Low2025-09-03
CVE-2025-9841 code-projects Mobile Shop Management System AddNewProduct.php unrestricted upload — Mobile Shop Management SystemCWE-434 6.3 Medium2025-09-02
CVE-2025-9743 code-projects Human Resource Integrated System login_attendance2.php sql injection — Human Resource Integrated SystemCWE-89 7.3 High2025-08-31
CVE-2025-9742 code-projects Human Resource Integrated System login.php sql injection — Human Resource Integrated SystemCWE-89 7.3 High2025-08-31
CVE-2025-9741 code-projects Human Resource Integrated System login_query12.php sql injection — Human Resource Integrated SystemCWE-89 7.3 High2025-08-31

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.