Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

code-projects — Vulnerabilities & Security Advisories 1240

Browse all 1240 CVE security advisories affecting code-projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Code-projects is a software development platform primarily serving as a repository for user-generated code snippets, tutorials, and project files. Historically, the platform has been associated with a significant volume of security vulnerabilities, currently totaling 1238 CVEs. These flaws predominantly involve remote code execution, cross-site scripting, and privilege escalation issues, often stemming from insecure handling of uploaded files or inadequate input validation within user-submitted scripts. The high number of recorded vulnerabilities suggests systemic weaknesses in the platform’s code review and deployment processes, allowing malicious actors to exploit exposed endpoints. While specific major incidents are rarely publicized as widespread breaches, the sheer quantity of CVEs indicates a persistent risk for users downloading and executing unverified code from the site. This environment necessitates rigorous sandboxing and verification practices for any developer interacting with the platform’s resources.

CVE IDTitleCVSSSeverityPublished
CVE-2025-15185 code-projects Refugee Food Management System refugeesreport.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-29
CVE-2025-15184 code-projects Refugee Food Management System refugeesreport2.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-29
CVE-2025-15183 code-projects Refugee Food Management System viewtakenfd.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-29
CVE-2025-15182 code-projects Refugee Food Management System served.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-29
CVE-2025-15181 code-projects Refugee Food Management System pagenateRefugeesList.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-29
CVE-2025-15053 code-projects Student Information System searchresults.php sql injection — Student Information SystemCWE-89 7.3 High2025-12-24
CVE-2025-15052 code-projects Student Information System profile.php cross site scripting — Student Information SystemCWE-79 3.5 Low2025-12-24
CVE-2025-15050 code-projects Student File Management System save_file.php unrestricted upload — Student File Management SystemCWE-434 6.3 Medium2025-12-24
CVE-2025-15049 code-projects Online Farm System addProduct.php sql injection — Online Farm SystemCWE-89 7.3 High2025-12-23
CVE-2025-15012 code-projects Refugee Food Management System home.php sql injection — Refugee Food Management SystemCWE-89 7.3 High2025-12-22
CVE-2025-15011 code-projects Simple Stock System logout.php sql injection — Simple Stock SystemCWE-89 7.3 High2025-12-22
CVE-2025-14968 code-projects Simple Stock System update.php sql injection — Simple Stock SystemCWE-89 7.3 High2025-12-19
CVE-2025-14962 code-projects Simple Stock System chatuser.php cross site scripting — Simple Stock SystemCWE-79 4.3 Medium2025-12-19
CVE-2025-14961 code-projects Simple Blood Donor Management System editedcampaign.php sql injection — Simple Blood Donor Management SystemCWE-89 7.3 High2025-12-19
CVE-2025-14960 code-projects Simple Blood Donor Management System editeddonor.php sql injection — Simple Blood Donor Management SystemCWE-89 7.3 High2025-12-19
CVE-2025-14959 code-projects Simple Stock System signup.php sql injection — Simple Stock SystemCWE-89 7.3 High2025-12-19
CVE-2025-14951 code-projects Scholars Tracking System home.php sql injection — Scholars Tracking SystemCWE-89 7.3 High2025-12-19
CVE-2025-14950 code-projects Scholars Tracking System delete_post.php sql injection — Scholars Tracking SystemCWE-89 7.3 High2025-12-19
CVE-2025-14940 code-projects Scholars Tracking System delete_user.php sql injection — Scholars Tracking SystemCWE-89 7.3 High2025-12-19
CVE-2025-14939 code-projects Online Appointment Booking System deletemanager.php sql injection — Online Appointment Booking SystemCWE-89 4.7 Medium2025-12-19
CVE-2025-14834 code-projects Simple Stock System checkuser.php sql injection — Simple Stock SystemCWE-89 6.3 Medium2025-12-17
CVE-2025-14833 code-projects Online Appointment Booking System deletemanagerclinic.php sql injection — Online Appointment Booking SystemCWE-89 7.3 High2025-12-17
CVE-2025-14663 code-projects Student File Management System update_student.php cross site scripting — Student File Management SystemCWE-79 2.4 Low2025-12-14
CVE-2025-14662 code-projects Student File Management System Update User update_user.php cross site scripting — Student File Management SystemCWE-79 2.4 Low2025-12-14
CVE-2025-14647 code-projects Computer Book Store admin_delete.php sql injection — Computer Book StoreCWE-89 7.3 High2025-12-14
CVE-2025-14646 code-projects Student File Management System delete_student.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-14
CVE-2025-14645 code-projects Student File Management System delete_user.php sql injection — Student File Management SystemCWE-89 7.3 High2025-12-14
CVE-2025-14643 code-projects Simple Attendance Record System check.php sql injection — Simple Attendance Record SystemCWE-89 7.3 High2025-12-14
CVE-2025-14642 code-projects Computer Laboratory System technical_staff_pic.php unrestricted upload — Computer Laboratory SystemCWE-434 4.7 Medium2025-12-14
CVE-2025-14641 code-projects Computer Laboratory System admin_pic.php unrestricted upload — Computer Laboratory SystemCWE-434 4.7 Medium2025-12-14

This page lists every published CVE security advisory associated with code-projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.