SourceCodester has 62 CVEs on record. Disclosure cadence is accelerating: 62 in the last 90 days against 0 in the 90 before. The busiest recent month was September 2026 with 62. The median CVSS is 7.3 (high). None have a confirmed exploitation report. The dominant weakness classes are CWE-74 (37) and CWE-89 (37). Most affected products: Class and Exam Timetabling System (11), Online Reviewer Management System (8), Drug Recommendation System (7).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.3
- Publish → KEV
- —
- Last 90 days
- 62 prev 0
Products
- Class and Exam Timetabling System 11
- Online Reviewer Management System 8
- Drug Recommendation System 7
- Syllabus-Aligned Learning Management & Examination System 7
- Online Voting System 5
- Inventory Management System 4
Worst active — by depth score
CVE-2026-95927High· 7.3A vulnerability was identified in SourceCodester Online Reviewer Management System 1.052CVE-2026-95926High· 7.3A vulnerability was determined in SourceCodester Online Reviewer Management System 1.052CVE-2026-95925High· 7.3A vulnerability was found in SourceCodester Online Reviewer Management System 1.052CVE-2026-94015High· 7.3A vulnerability was identified in SourceCodester Drug Recommendation System 1.052CVE-2026-93974High· 7.3A flaw has been found in SourceCodester Online Reviewer Management System 1.052
SourceCodester vulnerabilities
CVEs affecting SourceCodester, newest first. Open any entry for full detail, references, and exploit status.
62 CVEsRSS
CVE-2026-90695Low· 3.5PoCA vulnerability was found in SourceCodester Inventory Management System 1.0
A vulnerability was found in SourceCodester Inventory Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /api/vendors_handler.php of the component Vendor Management. Performing a manipulation re…
CVE-2026-90694Low· 3.5PoCA vulnerability has been found in SourceCodester Inventory Management System 1.0
A vulnerability has been found in SourceCodester Inventory Management System 1.0. Affected is an unknown function of the file /api/customers_handler.php of the component Customer Management Module. Such manipulation of the argument Custo…
CVE-2026-90696Low· 3.5PoCA vulnerability was determined in SourceCodester Inventory Management System 1.0
A vulnerability was determined in SourceCodester Inventory Management System 1.0. Affected by this issue is some unknown functionality of the file /api/products_handler.php of the component Product Management Module. Executing a manipula…
CVE-2026-90516High· 7.3PoCA vulnerability was found in SourceCodester School Registration and Fee System 1.0
A vulnerability was found in SourceCodester School Registration and Fee System 1.0. The affected element is an unknown function of the file /bilal/normal/pay_report.php. Performing a manipulation of the argument period results in sql inj…
CVE-2026-90515High· 7.3PoCA vulnerability was determined in SourceCodester School Registration and Fee System 1.0
A vulnerability was determined in SourceCodester School Registration and Fee System 1.0. The impacted element is an unknown function of the file /bilal/normal/delete_stud.php. Executing a manipulation of the argument selector[] can lead …
CVE-2026-90514High· 7.3PoCA vulnerability has been found in SourceCodester School Registration and Fee System 1.0
A vulnerability has been found in SourceCodester School Registration and Fee System 1.0. Impacted is an unknown function of the file /bilal/normal/save_stud.php. Such manipulation of the argument Status leads to sql injection. It is poss…
CVE-2026-90526High· 7.3PoCA security vulnerability has been detected in SourceCodester School Registration and Fee System 1.0
A security vulnerability has been detected in SourceCodester School Registration and Fee System 1.0. This impacts an unknown function of the file /bilal/save_class.php. The manipulation of the argument Category leads to sql injection. Re…
CVE-2026-86298High· 7.3PoCA security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. Impacted is an unknown function of the file /delete_subject.php. Performing a manipulation of the argument ID results in sql injection. It is po…
CVE-2026-86294Medium· 4.3PoCA vulnerability has been found in SourceCodester Simple Traffic Offense System 1.0
A vulnerability has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this issue is some unknown functionality of the file save-settings.php of the component Settings Update Endpoint. The manipulation of the arg…
CVE-2026-86293Medium· 6.5PoCA flaw has been found in SourceCodester Simple Traffic Offense System 1.0
A flaw has been found in SourceCodester Simple Traffic Offense System 1.0. Affected by this vulnerability is an unknown functionality of the file delete-user.php of the component Deletion Endpoint. Executing a manipulation of the argumen…
CVE-2026-86292High· 7.3PoCA vulnerability was detected in SourceCodester Simple Traffic Offense System 1.0
A vulnerability was detected in SourceCodester Simple Traffic Offense System 1.0. Affected is an unknown function of the file saveuser.php of the component User Creation. Performing a manipulation of the argument position results in miss…
CVE-2026-86290High· 7.3PoCA weakness has been identified in SourceCodester Online Voting System 1.0
A weakness has been identified in SourceCodester Online Voting System 1.0. This affects an unknown function of the file /voting/ajax.php?action=save_category. This manipulation of the argument Category causes sql injection. The attack ca…
CVE-2026-86281Medium· 4.3PoCA security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0
A security flaw has been discovered in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This impacts an unknown function. Performing a manipulation results in cross-site request forgery. The attack can be ini…
CVE-2026-86280Medium· 5.3PoCA vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0
A vulnerability was identified in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This affects an unknown function of the file cict_portal.sql. Such manipulation leads to cleartext storage of sensitive infor…
CVE-2026-86279Medium· 6.3PoCA vulnerability was determined in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0
A vulnerability was determined in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. The impacted element is an unknown function of the file auth_process.php of the component Login. This manipulation causes ses…
CVE-2026-86278Medium· 4.3PoCA vulnerability was found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0
A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. The affected element is an unknown function of the file manage_subjects.php. The manipulation of the argument msg/title/content re…
CVE-2026-86277High· 7.3PoCA vulnerability has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0
A vulnerability has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. Impacted is an unknown function of the file delete_exam.php. The manipulation of the argument ID leads to authorization bypas…
CVE-2026-86276High· 7.3PoCA flaw has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0
A flaw has been found in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This issue affects some unknown processing of the file db.php. Executing a manipulation can lead to hard-coded credentials. The attack…
CVE-2026-86275Medium· 5.3PoCA vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0
A vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This vulnerability affects the function register of the file auth.php. Performing a manipulation of the argument role results i…
CVE-2026-86225High· 7.3PoCA vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0
A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is the function mysqli_query of the file /admin/modal_add_room.php. The manipulation of the argument room_name leads t…
CVE-2026-86224High· 7.3PoCA vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0
A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected is the function mysqli_query of the file /admin/modal_add_product.php. Executing a manipulation of the argument fname can lead to sql inject…
CVE-2026-86223High· 7.3PoCA vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0
A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This impacts the function mysqli_query of the file /admin/modal_add_coursea.php. Performing a manipulation of the argument course results in sql injection…
CVE-2026-86222High· 7.3PoCA vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0
A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. This affects the function mysqli_query of the file /admin/modal_add_course2.php. Such manipulation of the argument course leads to sql injection. The…
CVE-2026-86221High· 7.3PoCA flaw has been found in SourceCodester Class and Exam Timetabling System 1.0
A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. The impacted element is the function mysqli_query of the file /admin/modal_add_course1.php. This manipulation of the argument course causes sql injection. The…
CVE-2026-86220High· 7.3PoCA vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0
A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. The affected element is the function mysqli_query of the file /admin/modal_add_course.php. The manipulation of the argument course results in sql injec…
CVE-2026-86210High· 7.3PoCA security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0
A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /delete_user_account.php. Such manipulation of the argument ID lea…
CVE-2026-86209High· 7.3PoCA weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0
A weakness has been identified in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /delete_user.php. This manipulation of the argument ID causes sql injection. The attack may be initiated …
CVE-2026-86208High· 7.3PoCA security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0
A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This impacts an unknown function of the file /delete_teacher.php. The manipulation of the argument ID results in sql injection. The attack can b…
CVE-2026-86162High· 7.3PoCA vulnerability was determined in SourceCodester Online Voting System 1.0
A vulnerability was determined in SourceCodester Online Voting System 1.0. This affects an unknown function of the file /ajax.php?action=login. Executing a manipulation of the argument Username can lead to sql injection. The attack can b…
CVE-2026-86161High· 7.3PoCA vulnerability was found in SourceCodester Online Voting System 1.0
A vulnerability was found in SourceCodester Online Voting System 1.0. The impacted element is an unknown function of the file /ajax.php?action=delete_category. Performing a manipulation of the argument ID results in sql injection. Remote…