Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

itsourcecode — Vulnerabilities & Security Advisories 503

Browse all 503 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

CVE IDTitleCVSSSeverityPublished
CVE-2025-13237 itsourcecode Inventory Management System LogSignModal.PHP sql injection — Inventory Management SystemCWE-89 7.3 High2025-11-16
CVE-2025-13236 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 6.3 Medium2025-11-16
CVE-2025-13235 itsourcecode Inventory Management System login.php sql injection — Inventory Management SystemCWE-89 7.3 High2025-11-16
CVE-2025-13234 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 6.3 Medium2025-11-16
CVE-2025-13233 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 7.3 High2025-11-16
CVE-2025-13210 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 4.7 Medium2025-11-15
CVE-2025-13061 itsourcecode Online Voting System index.php unrestricted upload — Online Voting SystemCWE-434 6.3 Medium2025-11-12
CVE-2025-12617 itsourcecode Billing System login_crud.php sql injection — Billing SystemCWE-89 7.3 High2025-11-03
CVE-2025-12608 itsourcecode Online Loan Management System manage_user.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-03
CVE-2025-12607 itsourcecode Online Loan Management System manage_payment.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-03
CVE-2025-12606 itsourcecode Online Loan Management System manage_borrower.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-02
CVE-2025-12605 itsourcecode Online Loan Management System manage_loan.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-02
CVE-2025-12604 itsourcecode Online Loan Management System load_fields.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-02
CVE-2025-11736 itsourcecode Online Examination System index.php sql injection — Online Examination SystemCWE-89 7.3 High2025-10-14
CVE-2025-11434 itsourcecode Student Transcript Processing System login.php sql injection — Student Transcript Processing SystemCWE-89 7.3 High2025-10-08
CVE-2025-11433 itsourcecode Leave Management System Query Parameter controller.php redirect cross site scripting — Leave Management SystemCWE-79 3.5 Low2025-10-08
CVE-2025-11432 itsourcecode Leave Management System reset.php sql injection — Leave Management SystemCWE-89 7.3 High2025-10-08
CVE-2025-11119 itsourcecode Hostel Management System POST Request index.php cross site scripting — Hostel Management SystemCWE-79 4.3 Medium2025-09-28
CVE-2025-11101 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job PortalCWE-89 7.3 High2025-09-28
CVE-2025-11090 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job PortalCWE-89 6.3 Medium2025-09-28
CVE-2025-11088 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job PortalCWE-89 6.3 Medium2025-09-27
CVE-2025-11078 itsourcecode Open Source Job Portal controller.php unrestricted upload — Open Source Job PortalCWE-434 6.3 Medium2025-09-27
CVE-2025-11054 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job PortalCWE-89 6.3 Medium2025-09-27
CVE-2025-11041 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job PortalCWE-89 6.3 Medium2025-09-26
CVE-2025-11038 itsourcecode Online Clinic Management System details.php sql injection — Online Clinic Management SystemCWE-89 6.3 Medium2025-09-26
CVE-2025-10834 itsourcecode Open Source Job Portal login.php sql injection — Open Source Job PortalCWE-89 7.3 High2025-09-23
CVE-2025-10800 itsourcecode Online Discussion Forum index.php sql injection — Online Discussion ForumCWE-89 7.3 High2025-09-22
CVE-2025-10673 itsourcecode Student Information Management System index.php sql injection — Student Information Management SystemCWE-89 7.3 High2025-09-18
CVE-2025-10670 itsourcecode E-Logbook with Health Monitoring System for COVID-19 check_profile.php sql injection — E-Logbook with Health Monitoring System for COVID-19CWE-89 7.3 High2025-09-18
CVE-2025-10668 itsourcecode Online Discussion Forum compose_msg_admin.php sql injection — Online Discussion ForumCWE-89 7.3 High2025-09-18

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.