Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

itsourcecode — Vulnerabilities & Security Advisories 503

Browse all 503 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

Found 12 results / 503Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-7075 itsourcecode Construction Management System locations.php sql injection — Construction Management SystemCWE-89 7.3 High2026-04-27
CVE-2026-7074 itsourcecode Construction Management System execute1.php sql injection — Construction Management SystemCWE-89 7.3 High2026-04-27
CVE-2026-7073 itsourcecode Construction Management System execute.php sql injection — Construction Management SystemCWE-89 7.3 High2026-04-27
CVE-2026-6191 itsourcecode Construction Management System equipments.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-13
CVE-2026-6190 itsourcecode Construction Management System employees.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-13
CVE-2026-6030 itsourcecode Construction Management System del1.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-10
CVE-2026-6007 itsourcecode Construction Management System del.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-10
CVE-2026-5823 itsourcecode Construction Management System borrowed_tool_report.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-08
CVE-2026-5719 itsourcecode Construction Management System borrowedtool.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-07
CVE-2026-5675 itsourcecode Construction Management System Parameter borrowed_tool.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-06
CVE-2026-5660 itsourcecode Construction Management System Parameter borrowed_equip.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-06
CVE-2026-5620 itsourcecode Construction Management System Parameter borrowed_equip_report.php sql injection — Construction Management SystemCWE-89 6.3 Medium2026-04-06

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.