Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

itsourcecode — Vulnerabilities & Security Advisories 503

Browse all 503 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

CVE IDTitleCVSSSeverityPublished
CVE-2024-7944 itsourcecode Laravel Property Management System DocumentsController.php UpdateDocumentsRequest unrestricted upload — Laravel Property Management SystemCWE-434 6.3 Medium2024-08-20
CVE-2024-7943 itsourcecode Laravel Property Management System PropertiesController.php upload unrestricted upload — Laravel Property Management SystemCWE-434 6.3 Medium2024-08-20
CVE-2024-7937 itsourcecode Project Expense Monitoring System printtransfer.php sql injection — Project Expense Monitoring SystemCWE-89 6.3 Medium2024-08-20
CVE-2024-7936 itsourcecode Project Expense Monitoring System transferred_report.php sql injection — Project Expense Monitoring SystemCWE-89 6.3 Medium2024-08-19
CVE-2024-7935 itsourcecode Project Expense Monitoring System print.php sql injection — Project Expense Monitoring SystemCWE-89 6.3 Medium2024-08-19
CVE-2024-7934 itsourcecode Project Expense Monitoring System execute.php sql injection — Project Expense Monitoring SystemCWE-89 6.3 Medium2024-08-19
CVE-2024-7933 itsourcecode Project Expense Monitoring System Backend Login login1.php sql injection — Project Expense Monitoring SystemCWE-89 7.3 High2024-08-19
CVE-2024-7913 itsourcecode Billing System addclient1.php sql injection — Billing SystemCWE-89 7.3 High2024-08-18
CVE-2024-7839 itsourcecode Billing System addbill.php sql injection — Billing SystemCWE-89 7.3 High2024-08-15
CVE-2024-7838 itsourcecode Online Food Ordering System addcategory.php sql injection — Online Food Ordering SystemCWE-89 7.3 High2024-08-15
CVE-2024-7794 itsourcecode Vehicle Management System mybill.php sql injection — Vehicle Management SystemCWE-89 6.3 Medium2024-08-14
CVE-2024-7680 itsourcecode Tailoring Management System incedit.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-08-11
CVE-2024-7506 itsourcecode Tailoring Management System setlogo.php unrestricted upload — Tailoring Management SystemCWE-434 6.3 Medium2024-08-06
CVE-2024-7505 itsourcecode Bike Delivery System contact_us_action.php sql injection — Bike Delivery SystemCWE-89 7.3 High2024-08-06
CVE-2024-7500 itsourcecode Airline Reservation System admin_class.php save_settings unrestricted upload — Airline Reservation SystemCWE-434 6.3 Medium2024-08-06
CVE-2024-7499 itsourcecode Airline Reservation System flights.php sql injection — Airline Reservation SystemCWE-89 6.3 Medium2024-08-06
CVE-2024-7498 itsourcecode Airline Reservation System Admin Login Page login.php login2 sql injection — Airline Reservation SystemCWE-89 7.3 High2024-08-06
CVE-2024-7497 itsourcecode Airline Reservation System index.php file inclusion — Airline Reservation SystemCWE-73 6.3 Medium2024-08-06
CVE-2024-7496 itsourcecode Airline Reservation System index.php file inclusion — Airline Reservation SystemCWE-73 6.3 Medium2024-08-06
CVE-2024-7495 itsourcecode Laravel Accounting System HomeController.php unrestricted upload — Laravel Accounting SystemCWE-434 6.3 Medium2024-08-06
CVE-2024-7455 itsourcecode Tailoring Management System partedit.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-08-04
CVE-2024-7452 itsourcecode Placement Management System view_company.php sql injection — Placement Management SystemCWE-89 6.3 Medium2024-08-04
CVE-2024-7451 itsourcecode Placement Management System apply_now.php sql injection — Placement Management SystemCWE-89 6.3 Medium2024-08-04
CVE-2024-7450 itsourcecode Placement Management System Image resume_upload.php unrestricted upload — Placement Management SystemCWE-434 6.3 Medium2024-08-04
CVE-2024-7449 itsourcecode Placement Management System login.php sql injection — Placement Management SystemCWE-89 7.3 High2024-08-04
CVE-2024-7446 itsourcecode Ticket Reservation System list_tickets.php sql injection — Ticket Reservation SystemCWE-89 4.7 Medium2024-08-03
CVE-2024-7445 itsourcecode Ticket Reservation System checkout_ticket_save.php sql injection — Ticket Reservation SystemCWE-89 4.7 Medium2024-08-03
CVE-2024-7444 itsourcecode Ticket Reservation System Login Page login.php sql injection — Ticket Reservation SystemCWE-89 7.3 High2024-08-03
CVE-2024-7321 itsourcecode Online Blood Bank Management System User Registration signup.php cross site scripting — Online Blood Bank Management SystemCWE-79 4.3 Medium2024-07-31
CVE-2024-7320 itsourcecode Online Blood Bank Management System Admin Login index.php sql injection — Online Blood Bank Management SystemCWE-89 7.3 High2024-07-31

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.