Vulnerabilities in SourceCodester

2,005 results
Vexday analysis

Com 1.829 CVEs catalogadas e 132 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao SourceCodester reflete um ritmo elevado de descobertas recentes que exige atenção contínua. A taxa de exploração ativa está abaixo da média geral do catálogo, sem registros no CISA KEV, o que pode indicar menor visibilidade dos ativos em ambientes críticos, mas não reduz o risco potencial dado que 143 falhas já possuem PoC pública disponível. O tipo de falha mais comum é CWE-89 (SQL Injection), uma classe de vulnerabilidade com longa tradição de abuso e baixo custo de exploração. A CVE mais perigosa identificada atualmente é CVE-2022-4855, com score EPSS de 0,2646, sugerindo probabilidade não negligenciável de exploração e recomendando priorização imediata em processos de remediação.

CVE-2025-6581MEDIUMSourceCodester Best Salon Management System add-customer.php sql injectionEPSS 0.5%CVE-2025-6605MEDIUMSourceCodester Best Salon Management System edit-staff.php sql injectionEPSS 0.5%CVE-2025-6604MEDIUMSourceCodester Best Salon Management System add-staff.php sql injectionEPSS 0.5%CVE-2025-6607MEDIUMSourceCodester Best Salon Management System stock.php sql injectionEPSS 0.5%CVE-2022-2645LOWSourceCodester Garage Management System edituser.php cross site scriptingEPSS 0.5%CVE-2024-7678MEDIUMSourceCodester Car Driving School Management System Master.php cross site scriptingEPSS 0.5%CVE-2024-7677MEDIUMSourceCodester Car Driving School Management System SystemSettings.php update_settings_info cross site scriptingEPSS 0.5%CVE-2025-6606MEDIUMSourceCodester Best Salon Management System add-services.php sql injectionEPSS 0.5%CVE-2025-6608MEDIUMSourceCodester Best Salon Management System edit-services.php sql injectionEPSS 0.5%CVE-2024-6267MEDIUMSourceCodester Service Provider Management System System Info Page index.php cross site scriptingEPSS 0.5%CVE-2025-6609MEDIUMSourceCodester Best Salon Management System bwdates-reports-details.php sql injectionEPSS 0.5%CVE-2024-7841MEDIUMSourceCodester Clinics Patient Management System check_user_name.php sql injectionEPSS 0.5%CVE-2022-2748LOWSourceCodester Simple Online Book Store System edit.php cross site scriptingEPSS 0.5%CVE-2025-6583MEDIUMSourceCodester Best Salon Management System view-appointment.php sql injectionEPSS 0.5%CVE-2025-9757MEDIUMCampcodes/SourceCodester Courier Management System ajax.php login sql injectionEPSS 0.5%CVE-2022-4232MEDIUMSourceCodester Event Registration System unrestricted uploadEPSS 0.5%CVE-2025-6582MEDIUMSourceCodester Best Salon Management System edit-customer-detailed.php sql injectionEPSS 0.5%CVE-2024-7661MEDIUMSourceCodester Car Driving School Management System index.php save_users cross-site request forgeryEPSS 0.5%CVE-2025-9832MEDIUMSourceCodester Food Ordering Management System register-router.php sql injectionEPSS 0.5%CVE-2026-8117MEDIUMSourceCodester Pizzafy Ecommerce System index.php cross site scriptingEPSS 0.4%