Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

itsourcecode — Vulnerabilities & Security Advisories 503

Browse all 503 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

Found 15 results / 503Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-4474 itsourcecode University Management System admin_single_student_update.php cross site scripting — University Management SystemCWE-79 2.4 Low2026-03-20
CVE-2026-4356 itsourcecode University Management System add_result.php cross site scripting — University Management SystemCWE-79 2.4 Low2026-03-18
CVE-2026-3982 itsourcecode University Management System view_result.php cross site scripting — University Management SystemCWE-79 4.3 Medium2026-03-12
CVE-2026-3944 itsourcecode University Management System att_add.php sql injection — University Management SystemCWE-89 7.3 High2026-03-11
CVE-2026-3765 itsourcecode University Management System att_single_view.php sql injection — University Management SystemCWE-89 7.3 High2026-03-08
CVE-2026-3760 itsourcecode University Management System view_result.php sql injection — University Management SystemCWE-89 7.3 High2026-03-08
CVE-2026-3747 itsourcecode University Management System add_result.php sql injection — University Management SystemCWE-89 7.3 High2026-03-08
CVE-2026-3740 itsourcecode University Management System admin_search_student.php sql injection — University Management SystemCWE-89 7.3 High2026-03-08
CVE-2026-3413 itsourcecode University Management System admin_single_student.php sql injection — University Management SystemCWE-89 7.3 High2026-03-02
CVE-2026-3412 itsourcecode University Management System att_single_view.php cross site scripting — University Management SystemCWE-79 4.3 Medium2026-03-02
CVE-2026-3411 itsourcecode University Management System admin_single_student_update.php sql injection — University Management SystemCWE-89 7.3 High2026-03-02
CVE-2024-6958 itsourcecode University Management System Avatar File st_update.php unrestricted upload — University Management SystemCWE-434 6.3 Medium2024-07-21
CVE-2024-6957 itsourcecode University Management System Login functions.php sql injection — University Management SystemCWE-89 7.3 High2024-07-21
CVE-2024-6956 itsourcecode University Management System view_cgpa.php sql injection — University Management SystemCWE-89 6.3 Medium2024-07-21
CVE-2024-6952 itsourcecode University Management System sql injection — University Management SystemCWE-89 6.3 Medium2024-07-21

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.