Code Projects maintains a portfolio of web and desktop applications spanning educational, healthcare, and institutional domains, including exam-form submission systems, inventory management, library platforms, patient record systems, and blood bank management tools. The vendor's vulnerability footprint is broadly represented in the landscape, reflecting the diversity and reach of these applications across academic and healthcare environments. Weaknesses affecting these products do not cluster around a single dominant flaw class, suggesting exposure distributed across varied architectural and implementation contexts rather than concentrated in a specific subsystem or design pattern. Defenders managing deployments of Code Projects applications should approach updates systematically across the portfolio rather than prioritizing specific products; current severity, exploitation, and remediation details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Code Projects over time
Signals from CVEs in this vendor scope (436 CVEs).
436 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-60306CRITICAL code-projects Simple Car Rental System 1.0 has a permission bypass issue where low privilege users can forge high privilege sessions and perform sensitive operations. | Oct 10, 2025 | 9.9 | 34 | NO | NO |
CVE-2025-9743CRITICAL A security flaw has been discovered in code-projects Human Resource Integrated System 1.0. Impacted is an unknown function of the file login_attendance2.php. Performing manipulatio | Aug 31, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8811CRITICAL A vulnerability, which was classified as critical, has been found in code-projects Simple Art Gallery 1.0. Affected by this issue is some unknown functionality of the file /Admin/r | Aug 10, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8409CRITICAL A vulnerability has been found in code-projects Vehicle Management 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /filter.ph | Jul 31, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8408CRITICAL A vulnerability, which was classified as critical, was found in code-projects Vehicle Management 1.0. Affected is an unknown function of the file /filter1.php. The manipulation of | Jul 31, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8376CRITICAL A vulnerability classified as critical has been found in code-projects Vehicle Management 1.0. Affected is an unknown function of the file /updatebal.php. The manipulation of the a | Jul 31, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8375CRITICAL A vulnerability was found in code-projects Vehicle Management 1.0. It has been rated as critical. This issue affects some unknown processing of the file /addvehicle.php. The manipu | Jul 31, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8374CRITICAL A vulnerability was found in code-projects Vehicle Management 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /addcompany.php. The manipu | Jul 31, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8372CRITICAL A vulnerability was found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/update_s7.ph | Jul 31, 2025 | 9.8 | 34 | NO | NO |
CVE-2025-8371CRITICAL A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/u | Jul 31, 2025 | 9.8 | 34 | NO | NO |
Signals from CVEs in this vendor scope (436 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Code Projects.
Media articles that mention a CVE ID that affects a product developed by Code Projects — matched by CVE ID, not by vendor name.