Codezips develops a focused portfolio of web-based business management applications including e-commerce platforms, gym management systems, and sales tracking tools, all of which handle sensitive transactional and user data. Despite the modest breadth of its product line, Codezips occupies a prominent position in the vulnerability landscape, and its disclosures skew strongly toward critical-severity outcomes across the entire portfolio. The recurring weakness classes—SQL injection, broader injection flaws, unrestricted file uploads, and access control bypasses—reflect pervasive input-handling and privilege-management deficiencies endemic to web application codebases, and collectively expose these business-critical systems to rapid, unauthenticated compromise. Defenders deploying or managing any of these platforms should treat security patches as urgent and review authentication boundaries and input validation comprehensively; current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Codezips over time
Signals from CVEs in this vendor scope (75 CVEs).
75 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-1380CRITICAL A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /dashboard/admin/del_pl | Feb 17, 2025 | 9.8 | 33 | NO | NO |
CVE-2025-1188CRITICAL A vulnerability, which was classified as critical, has been found in Codezips Gym Management System 1.0. Affected by this issue is some unknown functionality of the file /dashboard | Feb 12, 2025 | 9.8 | 31 | NO | NO |
CVE-2025-1903CRITICAL A vulnerability was found in Codezips Online Shopping Website 1.0. It has been rated as critical. This issue affects some unknown processing of the file /cart_add.php. The manipula | Mar 4, 2025 | 9.8 | 30 | NO | NO |
CVE-2025-0233CRITICAL A vulnerability was found in Codezips Project Management System 1.0. It has been classified as critical. This affects an unknown part of the file /pages/forms/course.php. The manip | Jan 5, 2025 | 9.8 | 30 | NO | NO |
CVE-2024-12484CRITICAL A vulnerability classified as critical was found in Codezips Technical Discussion Forum 1.0. This vulnerability affects unknown code of the file /signuppost.php. The manipulation o | Dec 12, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-10509CRITICAL A vulnerability, which was classified as critical, has been found in Codezips Online Institute Management System 1.0. This issue affects some unknown processing of the file /login. | Oct 30, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-10449CRITICAL A vulnerability, which was classified as critical, was found in Codezips Hospital Appointment System 1.0. This affects an unknown part of the file /loginAction.php. The manipulatio | Oct 28, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-10368CRITICAL A vulnerability was found in Codezips Sales Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /addstock.php. The manipulation o | Oct 25, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-9460CRITICAL A vulnerability was found in Codezips Online Shopping Portal 1.0. It has been classified as critical. Affected is an unknown function of the file index.php. The manipulation of the | Oct 3, 2024 | 9.8 | 30 | NO | NO |
CVE-2025-0541CRITICAL A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dashboard/admin/edit_member.php. | Jan 17, 2025 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (75 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Codezips.
Media articles that mention a CVE ID that affects a product developed by Codezips — matched by CVE ID, not by vendor name.