Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

itsourcecode — Vulnerabilities & Security Advisories 503

Browse all 503 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

Found 25 results / 503Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-2939 itsourcecode Student Management System Add Student add_student cross site scripting — Student Management SystemCWE-79 2.4 Low2026-02-22
CVE-2026-2014 itsourcecode Student Management System index.php sql injection — Student Management SystemCWE-89 7.3 High2026-02-06
CVE-2026-2013 itsourcecode Student Management System index.php sql injection — Student Management SystemCWE-89 7.3 High2026-02-06
CVE-2026-2012 itsourcecode Student Management System index.php sql injection — Student Management SystemCWE-89 7.3 High2026-02-06
CVE-2026-2011 itsourcecode Student Management System controller.php sql injection — Student Management SystemCWE-89 7.3 High2026-02-06
CVE-2025-15168 itsourcecode Student Management System statistical.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-29
CVE-2025-15078 itsourcecode Student Management System list_report.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-25
CVE-2025-15077 itsourcecode Student Management System form137.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-25
CVE-2025-15075 itsourcecode Student Management System student_p.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-25
CVE-2025-15034 itsourcecode Student Management System record.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-23
CVE-2025-14967 itsourcecode Student Management System candidates_report.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-19
CVE-2025-14653 itsourcecode Student Management System addrecord.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-14
CVE-2025-14644 itsourcecode Student Management System update_subject.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-14
CVE-2025-14639 itsourcecode Student Management System uprec.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-14
CVE-2025-14588 itsourcecode Student Management System update_program.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-13
CVE-2025-14578 itsourcecode Student Management System update_account.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-12
CVE-2025-14337 itsourcecode Student Management System new_grade.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-09
CVE-2025-14336 itsourcecode Student Management System promote.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-09
CVE-2025-14335 itsourcecode Student Management System new_school_year.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-09
CVE-2025-14334 itsourcecode Student Management System new_adviser.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-09
CVE-2025-14258 itsourcecode Student Management System newsubject.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-08
CVE-2025-14257 itsourcecode Student Management System newrecord.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-08
CVE-2025-14256 itsourcecode Student Management System newcurriculm.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-08
CVE-2025-14226 itsourcecode Student Management System edit_user.php sql injection — Student Management SystemCWE-89 7.3 High2025-12-08
CVE-2024-6191 itsourcecode Student Management System Login Page login.php sql injection — Student Management SystemCWE-89 7.3 High2024-06-20

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.