Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

itsourcecode — Vulnerabilities & Security Advisories 574

Browse all 574 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

CVE IDTitleCVSSSeverityPublished
CVE-2025-13420 itsourcecode Human Resource Management System EventStore.php sql injection — Human Resource Management SystemCWE-89 7.3 High2025-11-19
CVE-2025-13325 itsourcecode Student Information System enrollment_edit1.php sql injection — Student Information SystemCWE-89 6.3 Medium2025-11-18
CVE-2025-13301 itsourcecode Web-Based Internet Laboratory Management System controller.php sql injection — Web-Based Internet Laboratory Management SystemCWE-89 7.3 High2025-11-17
CVE-2025-13300 itsourcecode Web-Based Internet Laboratory Management System controller.php sql injection — Web-Based Internet Laboratory Management SystemCWE-89 7.3 High2025-11-17
CVE-2025-13299 itsourcecode Web-Based Internet Laboratory Management System controller.php sql injection — Web-Based Internet Laboratory Management SystemCWE-89 7.3 High2025-11-17
CVE-2025-13298 itsourcecode Web-Based Internet Laboratory Management System controller.php sql injection — Web-Based Internet Laboratory Management SystemCWE-89 7.3 High2025-11-17
CVE-2025-13297 itsourcecode Web-Based Internet Laboratory Management System controller.php sql injection — Web-Based Internet Laboratory Management SystemCWE-89 7.3 High2025-11-17
CVE-2025-13287 itsourcecode Online Voting System index.php sql injection — Online Voting SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13286 itsourcecode Online Voting System ajax.php sql injection — Online Voting SystemCWE-89 6.3 Medium2025-11-17
CVE-2025-13285 itsourcecode Online Voting System login.php sql injection — Online Voting SystemCWE-89 7.3 High2025-11-17
CVE-2025-13257 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 7.3 High2025-11-17
CVE-2025-13237 itsourcecode Inventory Management System LogSignModal.PHP sql injection — Inventory Management SystemCWE-89 7.3 High2025-11-16
CVE-2025-13236 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 6.3 Medium2025-11-16
CVE-2025-13235 itsourcecode Inventory Management System login.php sql injection — Inventory Management SystemCWE-89 7.3 High2025-11-16
CVE-2025-13234 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 6.3 Medium2025-11-16
CVE-2025-13233 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 7.3 High2025-11-16
CVE-2025-13210 itsourcecode Inventory Management System index.php sql injection — Inventory Management SystemCWE-89 4.7 Medium2025-11-15
CVE-2025-13061 itsourcecode Online Voting System index.php unrestricted upload — Online Voting SystemCWE-434 6.3 Medium2025-11-12
CVE-2025-12617 itsourcecode Billing System login_crud.php sql injection — Billing SystemCWE-89 7.3 High2025-11-03
CVE-2025-12608 itsourcecode Online Loan Management System manage_user.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-03
CVE-2025-12607 itsourcecode Online Loan Management System manage_payment.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-03
CVE-2025-12606 itsourcecode Online Loan Management System manage_borrower.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-02
CVE-2025-12605 itsourcecode Online Loan Management System manage_loan.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-02
CVE-2025-12604 itsourcecode Online Loan Management System load_fields.php sql injection — Online Loan Management SystemCWE-89 7.3 High2025-11-02
CVE-2025-11736 itsourcecode Online Examination System index.php sql injection — Online Examination SystemCWE-89 7.3 High2025-10-14
CVE-2025-11434 itsourcecode Student Transcript Processing System login.php sql injection — Student Transcript Processing SystemCWE-89 7.3 High2025-10-08
CVE-2025-11433 itsourcecode Leave Management System Query Parameter controller.php redirect cross site scripting — Leave Management SystemCWE-79 3.5 Low2025-10-08
CVE-2025-11432 itsourcecode Leave Management System reset.php sql injection — Leave Management SystemCWE-89 7.3 High2025-10-08
CVE-2025-11119 itsourcecode Hostel Management System POST Request index.php cross site scripting — Hostel Management SystemCWE-79 4.3 Medium2025-09-28
CVE-2025-11101 itsourcecode Open Source Job Portal index.php sql injection — Open Source Job PortalCWE-89 7.3 High2025-09-28

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.