Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2026-0579 code-projects Online Product Reservation System POST Parameter edit.php sql injection — Online Product Reservation SystemCWE-89 7.3 High2026-01-04
CVE-2026-0578 code-projects Online Product Reservation System delete.php sql injection — Online Product Reservation SystemCWE-89 7.3 High2026-01-04
CVE-2026-0577 code-projects Online Product Reservation System prod.php unrestricted upload — Online Product Reservation SystemCWE-434 6.3 Medium2026-01-04
CVE-2026-0576 code-projects Online Product Reservation System Parameter prod.php sql injection — Online Product Reservation SystemCWE-89 7.3 High2026-01-04
CVE-2026-0575 code-projects Online Product Reservation System Administrator Login adminlogin.php sql injection — Online Product Reservation SystemCWE-89 7.3 High2026-01-04
CVE-2026-0570 code-projects Online Music Site Feedback.php sql injection — Online Music SiteCWE-89 7.3 High2026-01-02
CVE-2026-0569 code-projects Online Music Site AlbumByCategory.php sql injection — Online Music SiteCWE-89 7.3 High2026-01-02
CVE-2026-0568 code-projects Online Music Site ViewSongs.php sql injection — Online Music SiteCWE-89 7.3 High2026-01-02
CVE-2026-0567 code-projects Content Management System pages.php sql injection — Content Management SystemCWE-89 7.3 High2026-01-02
CVE-2026-0566 code-projects Content Management System edit_posts.php unrestricted upload — Content Management SystemCWE-434 4.7 Medium2026-01-02
CVE-2026-0565 code-projects Content Management System delete.php sql injection — Content Management SystemCWE-89 7.3 High2026-01-02
CVE-2026-0546 code-projects Content Management System search.php sql injection — Content Management SystemCWE-89 7.3 High2026-01-02
CVE-2025-15410 code-projects Online Guitar Store login.php sql injection — Online Guitar StoreCWE-89 7.3 High2026-01-01
CVE-2025-15409 code-projects Online Guitar Store Delete_product.php sql injection — Online Guitar StoreCWE-89 7.3 High2026-01-01
CVE-2025-15408 code-projects Online Guitar Store Create_product.php sql injection — Online Guitar StoreCWE-89 7.3 High2026-01-01
CVE-2025-15407 code-projects Online Guitar Store Create_category.php sql injection — Online Guitar StoreCWE-89 7.3 High2026-01-01
CVE-2025-15243 code-projects Simple Stock System login.php sql injection — Simple Stock SystemCWE-89 7.3 High2025-12-30
CVE-2025-15213 code-projects Student File Management System File Download download.php improper authorization — Student File Management SystemCWE-285 4.3 Medium2025-12-30
CVE-2025-15212 code-projects Refugee Food Management System regfood.php sql injection — Refugee Food Management SystemCWE-89 6.3 Medium2025-12-30
CVE-2025-15211 code-projects Refugee Food Management System refugee.php sql injection — Refugee Food Management SystemCWE-89 6.3 Medium2025-12-30
CVE-2025-15210 code-projects Refugee Food Management System editrefugee.php sql injection — Refugee Food Management SystemCWE-89 6.3 Medium2025-12-29
CVE-2025-15209 code-projects Refugee Food Management System editfood.php sql injection — Refugee Food Management SystemCWE-89 6.3 Medium2025-12-29
CVE-2025-15208 code-projects Refugee Food Management System editrefugee.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-29
CVE-2025-15205 code-projects Student File Management System download.php sql injection — Student File Management SystemCWE-89 6.3 Medium2025-12-29
CVE-2025-15199 code-projects College Notes Uploading System userprofile.php unrestricted upload — College Notes Uploading SystemCWE-434 6.3 Medium2025-12-29
CVE-2025-15198 code-projects College Notes Uploading System login.php sql injection — College Notes Uploading SystemCWE-89 7.3 High2025-12-29
CVE-2025-15197 code-projects/anirbandutta9 Content Management System/News-Buzz editposts.php unrestricted upload — Content Management SystemCWE-434 4.7 Medium2025-12-29
CVE-2025-15196 code-projects Assessment Management login.php sql injection — Assessment ManagementCWE-89 7.3 High2025-12-29
CVE-2025-15195 code-projects Assessment Management add-module.php sql injection — Assessment ManagementCWE-89 7.3 High2025-12-29
CVE-2025-15186 code-projects Refugee Food Management System addusers.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-29

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.