Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

itsourcecode — Vulnerabilities & Security Advisories 503

Browse all 503 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

Found 20 results / 503Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2025-9426 itsourcecode Online Tour and Travel Management System package.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-25
CVE-2025-9425 itsourcecode Online Tour and Travel Management System enquiry.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-25
CVE-2025-9155 itsourcecode Online Tour and Travel Management System forget_password.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-19
CVE-2025-9154 itsourcecode Online Tour and Travel Management System page-login.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-19
CVE-2025-9153 itsourcecode Online Tour and Travel Management System travellers.php unrestricted upload — Online Tour and Travel Management SystemCWE-434 6.3 Medium2025-08-19
CVE-2025-9010 itsourcecode Online Tour and Travel Management System booking_report.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-15
CVE-2025-9009 itsourcecode Online Tour and Travel Management System email_setup.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-15
CVE-2025-9008 itsourcecode Online Tour and Travel Management System sms_setting.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-15
CVE-2025-8993 itsourcecode Online Tour and Travel Management System expense_report.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-15
CVE-2025-8984 itsourcecode Online Tour and Travel Management System expense_category.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8983 itsourcecode Online Tour and Travel Management System expense.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8982 itsourcecode Online Tour and Travel Management System currency.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8981 itsourcecode Online Tour and Travel Management System payment.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8972 itsourcecode Online Tour and Travel Management System page-login.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8971 itsourcecode Online Tour and Travel Management System travellers.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8970 itsourcecode Online Tour and Travel Management System booking.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8969 itsourcecode Online Tour and Travel Management System approve_user.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8968 itsourcecode Online Tour and Travel Management System disapprove_user.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8967 itsourcecode Online Tour and Travel Management System packages.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8966 itsourcecode Online Tour and Travel Management System tax.php sql injection — Online Tour and Travel Management SystemCWE-89 7.3 High2025-08-14

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.