Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2026-4900 code-projects Online Food Ordering System localhost.sql privilege escalation — Online Food Ordering SystemCWE-552 5.3 Medium2026-03-26
CVE-2026-4899 code-projects Online Food Ordering System food.php cross site scripting — Online Food Ordering SystemCWE-79 2.4 Low2026-03-26
CVE-2026-4898 code-projects Online Food Ordering System contact.php cross site scripting — Online Food Ordering SystemCWE-79 4.3 Medium2026-03-26
CVE-2026-4850 code-projects Simple Laundry System Parameter checkregisitem.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-03-26
CVE-2026-4849 code-projects Simple Laundry System Parameter modify.php cross site scripting — Simple Laundry SystemCWE-79 4.3 Medium2026-03-26
CVE-2026-4844 code-projects Online Food Ordering System Admin Login admin.php sql injection — Online Food Ordering SystemCWE-89 7.3 High2026-03-26
CVE-2026-4841 code-projects Online Food Ordering System Shopping Cart cart.php sql injection — Online Food Ordering SystemCWE-89 7.3 High2026-03-26
CVE-2026-4836 code-projects Accounting System delete.php sql injection — Accounting SystemCWE-89 6.3 Medium2026-03-26
CVE-2026-4835 code-projects Accounting System Web Application add_costumer.php cross site scripting — Accounting SystemCWE-79 3.5 Low2026-03-26
CVE-2026-4784 code-projects Simple Laundry System Parameter checkcheckout.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-03-25
CVE-2026-4595 code-projects Exam Form Submission update_s6.php cross site scripting — Exam Form SubmissionCWE-79 2.4 Low2026-03-23
CVE-2026-4581 code-projects Simple Laundry System Parameters checklogin.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-03-23
CVE-2026-4580 code-projects Simple Laundry System Parameters checkupdatestatus.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-03-23
CVE-2026-4579 code-projects Simple Laundry System Parameters viewdetail.php sql injection — Simple Laundry SystemCWE-89 7.3 High2026-03-23
CVE-2026-4578 code-projects Exam Form Submission update_s3.php cross site scripting — Exam Form SubmissionCWE-79 2.4 Low2026-03-23
CVE-2026-4577 code-projects Exam Form Submission update_s4.php cross site scripting — Exam Form SubmissionCWE-79 2.4 Low2026-03-23
CVE-2026-4576 code-projects Exam Form Submission update_s5.php cross site scripting — Exam Form SubmissionCWE-79 2.4 Low2026-03-23
CVE-2026-4575 code-projects Exam Form Submission update_s2.php cross site scripting — Exam Form SubmissionCWE-79 2.4 Low2026-03-23
CVE-2026-4557 code-projects Exam Form Submission update_s1.php cross site scripting — Exam Form SubmissionCWE-79 4.3 Medium2026-03-22
CVE-2026-4550 code-projects Simple Gym Management System func.php sql injection — Simple Gym Management SystemCWE-89 4.7 Medium2026-03-22
CVE-2026-4533 code-projects Simple Food Ordering System all-tickets.php sql injection — Simple Food Ordering SystemCWE-89 6.3 Medium2026-03-22
CVE-2026-4532 code-projects Simple Food Ordering System Database Backup food.sql file access — Simple Food Ordering SystemCWE-552 5.3 Medium2026-03-22
CVE-2026-4319 code-projects Simple Food Order System add-item.php sql injection — Simple Food Order SystemCWE-89 7.3 High2026-03-17
CVE-2026-3763 code-projects Simple Flight Ticket Booking System showhistory.php cross site scripting — Simple Flight Ticket Booking SystemCWE-79 4.3 Medium2026-03-08
CVE-2026-3745 code-projects Student Web Portal profile.php sql injection — Student Web PortalCWE-89 6.3 Medium2026-03-08
CVE-2026-3744 code-projects Student Web Portal signup.php valreg_passwdation sql injection — Student Web PortalCWE-89 7.3 High2026-03-08
CVE-2026-3736 code-projects Simple Flight Ticket Booking System SearchResultRoundtrip.php sql injection — Simple Flight Ticket Booking SystemCWE-89 7.3 High2026-03-08
CVE-2026-3735 code-projects Simple Flight Ticket Booking System SearchResultOneway.php sql injection — Simple Flight Ticket Booking SystemCWE-89 7.3 High2026-03-08
CVE-2026-3723 code-projects Simple Flight Ticket Booking System Admindelete.php sql injection — Simple Flight Ticket Booking SystemCWE-89 7.3 High2026-03-08
CVE-2026-3711 code-projects Simple Flight Ticket Booking System Adminupdate.php sql injection — Simple Flight Ticket Booking SystemCWE-89 4.7 Medium2026-03-08

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.