SourceCodester has 57 CVEs on record. Disclosure cadence is accelerating: 57 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 57. The median CVSS is 7.3 (high). None have a confirmed exploitation report. The dominant weakness classes are CWE-74 (33) and CWE-89 (33). Most affected products: Class and Exam Timetabling System (11), Drug Recommendation System (7), Syllabus-Aligned Learning Management & Examination System (7).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.3
- Publish → KEV
- —
- Last 90 days
- 57 prev 0
Products
- Class and Exam Timetabling System 11
- Drug Recommendation System 7
- Syllabus-Aligned Learning Management & Examination System 7
- Online Voting System 5
- Inventory Management System 4
- Online Faculty Clearance System 4
Worst active — by depth score
CVE-2026-93973High· 7.3A vulnerability was detected in SourceCodester Online Reviewer Management System 1.052CVE-2026-92406High· 7.3A vulnerability was detected in SourceCodester Inventory and Monitoring System 1.052CVE-2026-92405High· 7.3A security vulnerability has been detected in SourceCodester Inventory and Monitoring System 1.052CVE-2026-91004High· 7.3A vulnerability has been found in SourceCodester Online Faculty Clearance System 1.052CVE-2026-90877High· 7.3A vulnerability was found in SourceCodester Online Faculty Clearance System 1.052
SourceCodester vulnerabilities
CVEs affecting SourceCodester, newest first. Open any entry for full detail, references, and exploit status.
57 CVEsRSS
CVE-2026-94035Medium· 4.3A vulnerability was determined in SourceCodester Drug Recommendation System 1.0
A vulnerability was determined in SourceCodester Drug Recommendation System 1.0. Impacted is an unknown function of the file /drug_recommender/index.php. Executing a manipulation of the argument full name can lead to cross site scripting…
CVE-2026-94034Low· 3.5A vulnerability was found in SourceCodester Drug Recommendation System 1.0
A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /drug_recommender/Admin/change_password of the component Password Change. Performing a manipulation of the…
CVE-2026-94033Low· 3.5PoCA vulnerability has been found in SourceCodester Drug Recommendation System 1.0
A vulnerability has been found in SourceCodester Drug Recommendation System 1.0. This vulnerability affects unknown code of the file /drug_recommender/Admin/add_user of the component User Management. Such manipulation of the argument txt…
CVE-2026-94016Low· 2.4A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0
A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. This impacts an unknown function of the file /drug_recommender/Admin/add_symptom. Performing a manipulation of the argument txtname results in cross si…
CVE-2026-94015High· 7.3A vulnerability was identified in SourceCodester Drug Recommendation System 1.0
A vulnerability was identified in SourceCodester Drug Recommendation System 1.0. This affects an unknown function of the file /drug_recommender/Admin/edit_user.php. Such manipulation of the argument ID leads to sql injection. The attack …
CVE-2026-93997High· 7.3A weakness has been identified in SourceCodester Drug Recommendation System 1.0
A weakness has been identified in SourceCodester Drug Recommendation System 1.0. Affected by this issue is some unknown functionality of the file /Admin/edit_symptom.php. This manipulation of the argument ID causes sql injection. The att…
CVE-2026-93974High· 7.3A flaw has been found in SourceCodester Online Reviewer Management System 1.0
A flaw has been found in SourceCodester Online Reviewer Management System 1.0. This affects an unknown function of the file /reviewer_0/admins/assessments/databank/btn_functions.php?action=remove. Executing a manipulation of the argument…
CVE-2026-93973High· 7.3PoCA vulnerability was detected in SourceCodester Online Reviewer Management System 1.0
A vulnerability was detected in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unknown function of the file /reviewer_0/admins/assessments/subject/btn_functions.php?action=remove. Performing a manipulati…
CVE-2026-93972High· 7.3A security vulnerability has been detected in SourceCodester Online Reviewer Management System 1.0
A security vulnerability has been detected in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown function of the file /reviewer_0/admins/assessments/course/btn_functions.php. Such manipulation of the…
CVE-2026-93959High· 7.3A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0
A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. This issue affects some unknown processing of the file /reviewer_0/admins/assessments/course/btn_functions.php. This manipulation of the argument Cou…
CVE-2026-92927Medium· 5.3PoCA vulnerability was found in SourceCodester Drug Recommendation System 1.0
A vulnerability was found in SourceCodester Drug Recommendation System 1.0. This issue affects some unknown processing of the file /db/drug_recommendor.sql. Performing a manipulation results in information disclosure. The attack is possi…
CVE-2026-92406High· 7.3PoCA vulnerability was detected in SourceCodester Inventory and Monitoring System 1.0
A vulnerability was detected in SourceCodester Inventory and Monitoring System 1.0. The impacted element is an unknown function of the file /admins/assessments/databank/btn_functions.php?action=add. Performing a manipulation of the argum…
CVE-2026-92405High· 7.3PoCA security vulnerability has been detected in SourceCodester Inventory and Monitoring System 1.0
A security vulnerability has been detected in SourceCodester Inventory and Monitoring System 1.0. The affected element is an unknown function of the file /index.php. Such manipulation of the argument Username leads to sql injection. The …
CVE-2026-92385Low· 2.4A vulnerability has been found in SourceCodester Online Food Ordering System 1.0
A vulnerability has been found in SourceCodester Online Food Ordering System 1.0. The affected element is an unknown function of the file /admin/update_category.php of the component Category Update. The manipulation leads to cross site s…
CVE-2026-91005Medium· 6.3A vulnerability was found in SourceCodester Online Faculty Clearance System 1.0
A vulnerability was found in SourceCodester Online Faculty Clearance System 1.0. This affects the function move_uploaded_file of the file production/edit_picture.php of the component Profile Picture Upload. Performing a manipulation of t…
CVE-2026-91004High· 7.3PoCA vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0
A vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0. The impacted element is an unknown function of the file /delete_faculty1.php. Such manipulation of the argument ID leads to sql injection. The attack c…
CVE-2026-90877High· 7.3PoCA vulnerability was found in SourceCodester Online Faculty Clearance System 1.0
A vulnerability was found in SourceCodester Online Faculty Clearance System 1.0. Affected by this issue is some unknown functionality of the file /update_requirement_status.php. The manipulation of the argument haydi results in sql injec…
CVE-2026-90876High· 7.3PoCA vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0
A vulnerability has been found in SourceCodester Online Faculty Clearance System 1.0. Affected by this vulnerability is an unknown functionality of the file /delete_requirement.php. The manipulation of the argument ID leads to sql inject…
CVE-2026-90857Medium· 6.3PoCA vulnerability was detected in SourceCodester College Notes Gallery Management System 1.0
A vulnerability was detected in SourceCodester College Notes Gallery Management System 1.0. Affected is an unknown function of the file /dashboard/userprofile.php of the component Profile Upload. Performing a manipulation of the argument…
CVE-2026-90856High· 7.3PoCA security vulnerability has been detected in SourceCodester College Notes Gallery Management System 1.0
A security vulnerability has been detected in SourceCodester College Notes Gallery Management System 1.0. This impacts an unknown function of the file signup.php of the component Registration Flow. Such manipulation of the argument role …
CVE-2026-90855High· 7.3PoCA weakness has been identified in SourceCodester/katojkalemba Online Food Ordering System 1.0
A weakness has been identified in SourceCodester/katojkalemba Online Food Ordering System 1.0. This affects an unknown function of the file /web/order.php. This manipulation of the argument ID causes sql injection. The attack can be init…
CVE-2026-90854High· 7.3A security flaw has been discovered in SourceCodester/katojkalemba Online Food Ordering System 1.0
A security flaw has been discovered in SourceCodester/katojkalemba Online Food Ordering System 1.0. The impacted element is an unknown function of the file /web/category-foods.php. The manipulation of the argument ID results in sql injec…
CVE-2026-90849High· 7.3PoCA security vulnerability has been detected in SourceCodester College Notes Gallery Management System 1.0
A security vulnerability has been detected in SourceCodester College Notes Gallery Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /College/login.php. The manipulation of the argument User le…
CVE-2026-90615Medium· 4.3PoCA security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0
A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /subject1.php. Such manipulation of the argument subject leads to cross site scripting. The atta…
CVE-2026-90697Medium· 4.3PoCA vulnerability was identified in SourceCodester Inventory Management System 1.0
A vulnerability was identified in SourceCodester Inventory Management System 1.0. This affects an unknown part of the file invoice.php. The manipulation of the argument ID leads to authorization bypass. It is possible to initiate the att…
CVE-2026-90695Low· 3.5PoCA vulnerability was found in SourceCodester Inventory Management System 1.0
A vulnerability was found in SourceCodester Inventory Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /api/vendors_handler.php of the component Vendor Management. Performing a manipulation re…
CVE-2026-90694Low· 3.5PoCA vulnerability has been found in SourceCodester Inventory Management System 1.0
A vulnerability has been found in SourceCodester Inventory Management System 1.0. Affected is an unknown function of the file /api/customers_handler.php of the component Customer Management Module. Such manipulation of the argument Custo…
CVE-2026-90696Low· 3.5PoCA vulnerability was determined in SourceCodester Inventory Management System 1.0
A vulnerability was determined in SourceCodester Inventory Management System 1.0. Affected by this issue is some unknown functionality of the file /api/products_handler.php of the component Product Management Module. Executing a manipula…
CVE-2026-90516High· 7.3PoCA vulnerability was found in SourceCodester School Registration and Fee System 1.0
A vulnerability was found in SourceCodester School Registration and Fee System 1.0. The affected element is an unknown function of the file /bilal/normal/pay_report.php. Performing a manipulation of the argument period results in sql inj…
CVE-2026-90515High· 7.3PoCA vulnerability was determined in SourceCodester School Registration and Fee System 1.0
A vulnerability was determined in SourceCodester School Registration and Fee System 1.0. The impacted element is an unknown function of the file /bilal/normal/delete_stud.php. Executing a manipulation of the argument selector[] can lead …