{"schema_version":1,"title":"Code-Projects vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 125 vulnerabilities in Code-Projects: 3 in the last 7 days and 69 in the last 90 days, 2 of them critical and 0 exploited in the wild. The most recent, CVE-2026-93980, was published on 20 September 2026. 15 technologies have a page of their own.","url":"https://junglewise.ai/threats/vendors/code-projects","json_url":"https://junglewise.ai/threats/vendors/code-projects.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/code-projects","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":70,"all_time":125,"critical":2,"exploited":0,"last_7_days":3,"last_30_days":25,"last_90_days":69,"last_365_days":125},"latest":[{"cve":"CVE-2026-93980","cvss":7.3,"epss":0.0043,"slug":"cve-2026-93980-a-weakness-has-been-identified-in-code-projects-internship","title":"code-projects Internship Management System SQL injection in admin login","severity":"high","exploited":false,"published_at":"2026-09-20T11:16:58.307+00:00","url":"https://junglewise.ai/threats/cve-2026-93980-a-weakness-has-been-identified-in-code-projects-internship"},{"cve":"CVE-2026-93979","cvss":7.3,"epss":0.0043,"slug":"cve-2026-93979-a-security-flaw-has-been-discovered-in-code-projects-internship","title":"code-projects Internship Management System SQL injection in login","severity":"high","exploited":false,"published_at":"2026-09-20T11:16:58.13+00:00","url":"https://junglewise.ai/threats/cve-2026-93979-a-security-flaw-has-been-discovered-in-code-projects-internship"},{"cve":"CVE-2026-93978","cvss":7.3,"epss":0.0043,"slug":"cve-2026-93978-a-vulnerability-was-identified-in-code-projects-internship","title":"code-projects Internship Management System SQL injection in login","severity":"high","exploited":false,"published_at":"2026-09-20T11:16:57.953+00:00","url":"https://junglewise.ai/threats/cve-2026-93978-a-vulnerability-was-identified-in-code-projects-internship"},{"cve":"CVE-2026-92926","cvss":7.3,"epss":0.0043,"slug":"cve-2026-92926-code-projects-matrimonial-system-sql-injection-in-partner","title":"Code Projects Matrimonial System SQL injection in partner preferences","severity":"high","exploited":false,"published_at":"2026-09-17T18:17:14.93+00:00","url":"https://junglewise.ai/threats/cve-2026-92926-code-projects-matrimonial-system-sql-injection-in-partner"},{"cve":"CVE-2026-92366","cvss":7.3,"epss":0.0056,"slug":"cve-2026-92366-code-projects-matrimonial-system-sql-injection-in-search","title":"code-projects Matrimonial System SQL injection in search","severity":"high","exploited":false,"published_at":"2026-09-16T15:19:01.13+00:00","url":"https://junglewise.ai/threats/cve-2026-92366-code-projects-matrimonial-system-sql-injection-in-search"},{"cve":"CVE-2026-86519","cvss":5.3,"epss":0.0053,"slug":"cve-2026-86519-code-projects-student-crud-operation-information-disclosure-in","title":"code-projects Student Crud Operation information disclosure in backup file","severity":"medium","exploited":false,"published_at":"2026-09-08T05:16:48.34+00:00","url":"https://junglewise.ai/threats/cve-2026-86519-code-projects-student-crud-operation-information-disclosure-in"},{"cve":"CVE-2026-86518","cvss":6.3,"epss":0.0033,"slug":"cve-2026-86518-code-projects-student-crud-operation-sql-injection-in-edit-php","title":"code-projects Student Crud Operation SQL injection in edit.php","severity":"medium","exploited":false,"published_at":"2026-09-08T04:17:42.56+00:00","url":"https://junglewise.ai/threats/cve-2026-86518-code-projects-student-crud-operation-sql-injection-in-edit-php"},{"cve":"CVE-2026-86302","cvss":5.3,"epss":0.0053,"slug":"cve-2026-86302-code-projects-hospital-information-system-information-disclosure","title":"code-projects Hospital Information System information disclosure via SQL backup","severity":"medium","exploited":false,"published_at":"2026-09-07T13:20:39.42+00:00","url":"https://junglewise.ai/threats/cve-2026-86302-code-projects-hospital-information-system-information-disclosure"},{"cve":"CVE-2026-86301","cvss":3.5,"epss":0.0035,"slug":"cve-2026-86301-code-projects-hospital-information-system-reflected-xss-in","title":"code-projects Hospital Information System reflected XSS in patient ID parameter","severity":"low","exploited":false,"published_at":"2026-09-07T12:17:21.68+00:00","url":"https://junglewise.ai/threats/cve-2026-86301-code-projects-hospital-information-system-reflected-xss-in"},{"cve":"CVE-2026-86217","cvss":5.3,"epss":0.0053,"slug":"cve-2026-86217-code-projects-hotel-and-tourism-reservation-information","title":"code-projects Hotel and Tourism Reservation information disclosure via exposed SQL file","severity":"medium","exploited":false,"published_at":"2026-09-06T15:17:24.12+00:00","url":"https://junglewise.ai/threats/cve-2026-86217-code-projects-hotel-and-tourism-reservation-information"},{"cve":"CVE-2026-86216","cvss":4.3,"epss":0.0047,"slug":"cve-2026-86216-code-projects-hotel-and-tourism-reservation-reflected-xss-in-room","title":"code-projects Hotel and Tourism Reservation reflected XSS in room parameter","severity":"medium","exploited":false,"published_at":"2026-09-06T14:17:25.76+00:00","url":"https://junglewise.ai/threats/cve-2026-86216-code-projects-hotel-and-tourism-reservation-reflected-xss-in-room"},{"cve":"CVE-2026-86181","cvss":3.5,"epss":0.0037,"slug":"cve-2026-86181-code-projects-task-management-system-stored-cross-site-scripting","title":"code-projects Task Management System stored cross-site scripting in user profile update","severity":"low","exploited":false,"published_at":"2026-09-06T09:17:16.123+00:00","url":"https://junglewise.ai/threats/cve-2026-86181-code-projects-task-management-system-stored-cross-site-scripting"},{"cve":"CVE-2026-86180","cvss":7.3,"epss":0.0043,"slug":"cve-2026-86180-code-projects-task-management-system-sql-injection-in-email","title":"code-projects Task Management System SQL injection in email parameter","severity":"high","exploited":false,"published_at":"2026-09-06T08:16:41.91+00:00","url":"https://junglewise.ai/threats/cve-2026-86180-code-projects-task-management-system-sql-injection-in-email"},{"cve":"CVE-2026-86179","cvss":5.3,"epss":0.0053,"slug":"cve-2026-86179-code-projects-daily-expense-manager-information-disclosure-in","title":"code-projects Daily Expense Manager information disclosure in database backup handler","severity":"medium","exploited":false,"published_at":"2026-09-06T08:16:41.723+00:00","url":"https://junglewise.ai/threats/cve-2026-86179-code-projects-daily-expense-manager-information-disclosure-in"},{"cve":"CVE-2026-85643","cvss":4.7,"epss":0.0035,"slug":"cve-2026-85643-code-projects-online-shopping-system-sql-injection-in-admin","title":"code-projects Online Shopping System SQL injection in admin adduser","severity":"medium","exploited":false,"published_at":"2026-09-04T20:17:32.853+00:00","url":"https://junglewise.ai/threats/cve-2026-85643-code-projects-online-shopping-system-sql-injection-in-admin"},{"cve":"CVE-2026-85517","cvss":5.3,"epss":0.0053,"slug":"cve-2026-85517-code-projects-vehicle-management-system-information-disclosure","title":"code-projects Vehicle Management System information disclosure via exposed SQL database file","severity":"medium","exploited":false,"published_at":"2026-09-04T14:17:22.633+00:00","url":"https://junglewise.ai/threats/cve-2026-85517-code-projects-vehicle-management-system-information-disclosure"},{"cve":"CVE-2026-85516","cvss":7.3,"epss":0.0043,"slug":"cve-2026-85516-code-projects-vehicle-management-system-sql-injection-in-busid","title":"code-projects Vehicle Management System SQL injection in busid parameter","severity":"high","exploited":false,"published_at":"2026-09-04T13:20:11.47+00:00","url":"https://junglewise.ai/threats/cve-2026-85516-code-projects-vehicle-management-system-sql-injection-in-busid"},{"cve":"CVE-2026-85399","cvss":7.3,"epss":0.0043,"slug":"cve-2026-85399-code-projects-hospital-information-system-sql-injection","title":"code-projects Hospital Information System SQL injection","severity":"high","exploited":false,"published_at":"2026-09-04T03:17:46.5+00:00","url":"https://junglewise.ai/threats/cve-2026-85399-code-projects-hospital-information-system-sql-injection"},{"cve":"CVE-2026-85398","cvss":7.3,"epss":0.0043,"slug":"cve-2026-85398-code-projects-hospital-information-system-sql-injection-in","title":"code-projects Hospital Information System SQL injection in ReqController","severity":"high","exploited":false,"published_at":"2026-09-04T03:17:46.327+00:00","url":"https://junglewise.ai/threats/cve-2026-85398-code-projects-hospital-information-system-sql-injection-in"},{"cve":"CVE-2026-85397","cvss":7.3,"epss":0.0043,"slug":"cve-2026-85397-code-projects-hospital-information-system-sql-injection","title":"code-projects Hospital Information System SQL injection","severity":"high","exploited":false,"published_at":"2026-09-04T02:17:20.363+00:00","url":"https://junglewise.ai/threats/cve-2026-85397-code-projects-hospital-information-system-sql-injection"},{"cve":"CVE-2026-82701","cvss":7.3,"epss":0.0043,"slug":"cve-2026-82701-code-projects-online-shopping-system-sql-injection-in-search","title":"code-projects Online Shopping System SQL injection in search","severity":"high","exploited":false,"published_at":"2026-08-31T15:18:10.42+00:00","url":"https://junglewise.ai/threats/cve-2026-82701-code-projects-online-shopping-system-sql-injection-in-search"},{"cve":"CVE-2026-82700","cvss":4.3,"epss":0.0047,"slug":"cve-2026-82700-code-projects-online-shopping-system-cross-site-scripting-in","title":"code-projects Online Shopping System cross-site scripting in newsletter","severity":"medium","exploited":false,"published_at":"2026-08-31T14:17:27.367+00:00","url":"https://junglewise.ai/threats/cve-2026-82700-code-projects-online-shopping-system-cross-site-scripting-in"},{"cve":"CVE-2026-82625","cvss":4.3,"epss":0.0047,"slug":"cve-2026-82625-code-projects-simple-inventory-system-cross-site-scripting-in","title":"code-projects Simple Inventory System cross-site scripting in user registration","severity":"medium","exploited":false,"published_at":"2026-08-31T07:17:47.12+00:00","url":"https://junglewise.ai/threats/cve-2026-82625-code-projects-simple-inventory-system-cross-site-scripting-in"},{"cve":"CVE-2026-82624","cvss":5.3,"epss":0.0053,"slug":"cve-2026-82624-code-projects-simple-inventory-system-information-disclosure-in","title":"code-projects Simple Inventory System information disclosure in database backup","severity":"medium","exploited":false,"published_at":"2026-08-31T07:17:46.93+00:00","url":"https://junglewise.ai/threats/cve-2026-82624-code-projects-simple-inventory-system-information-disclosure-in"},{"cve":"CVE-2026-82622","cvss":3.5,"epss":0.0035,"slug":"cve-2026-82622-code-projects-employee-leave-managing-system-xss-in-employee","title":"code-projects Employee Leave Managing System XSS in employee profile","severity":"low","exploited":false,"published_at":"2026-08-31T07:17:46.533+00:00","url":"https://junglewise.ai/threats/cve-2026-82622-code-projects-employee-leave-managing-system-xss-in-employee"}],"vendor":{"hub":true,"name":"Code-Projects","slug":"code-projects","homepage":"https://code-projects.org/","description":"Code-projects is an organization that provides open-source web and mobile application source code for educational purposes.","url":"https://junglewise.ai/threats/vendors/code-projects"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":25},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":5},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":7},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":16},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":5},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"most_severe":[{"cve":"CVE-2025-60306","cvss":9.9,"epss":0.0038,"slug":"cve-2025-60306-code-projects-simple-car-rental-system-session-forgery-privilege","title":"code-projects Simple Car Rental System session forgery privilege escalation","severity":"critical","exploited":false,"published_at":"2025-10-10T17:15:39.05+00:00","url":"https://junglewise.ai/threats/cve-2025-60306-code-projects-simple-car-rental-system-session-forgery-privilege"},{"cve":"CVE-2025-70152","cvss":9.8,"epss":0.0045,"slug":"cve-2025-70152-code-projects-community-project-scholars-tracking-system-sql","title":"code-projects Community Project Scholars Tracking System SQL injection in user management","severity":"critical","exploited":false,"published_at":"2026-02-18T18:24:21.53+00:00","url":"https://junglewise.ai/threats/cve-2025-70152-code-projects-community-project-scholars-tracking-system-sql"},{"cve":"CVE-2026-92366","cvss":7.3,"epss":0.0056,"slug":"cve-2026-92366-code-projects-matrimonial-system-sql-injection-in-search","title":"code-projects Matrimonial System SQL injection in search","severity":"high","exploited":false,"published_at":"2026-09-16T15:19:01.13+00:00","url":"https://junglewise.ai/threats/cve-2026-92366-code-projects-matrimonial-system-sql-injection-in-search"},{"cve":"CVE-2026-93980","cvss":7.3,"epss":0.0043,"slug":"cve-2026-93980-a-weakness-has-been-identified-in-code-projects-internship","title":"code-projects Internship Management System SQL injection in admin login","severity":"high","exploited":false,"published_at":"2026-09-20T11:16:58.307+00:00","url":"https://junglewise.ai/threats/cve-2026-93980-a-weakness-has-been-identified-in-code-projects-internship"},{"cve":"CVE-2026-93979","cvss":7.3,"epss":0.0043,"slug":"cve-2026-93979-a-security-flaw-has-been-discovered-in-code-projects-internship","title":"code-projects Internship Management System SQL injection in login","severity":"high","exploited":false,"published_at":"2026-09-20T11:16:58.13+00:00","url":"https://junglewise.ai/threats/cve-2026-93979-a-security-flaw-has-been-discovered-in-code-projects-internship"},{"cve":"CVE-2026-93978","cvss":7.3,"epss":0.0043,"slug":"cve-2026-93978-a-vulnerability-was-identified-in-code-projects-internship","title":"code-projects Internship Management System SQL injection in login","severity":"high","exploited":false,"published_at":"2026-09-20T11:16:57.953+00:00","url":"https://junglewise.ai/threats/cve-2026-93978-a-vulnerability-was-identified-in-code-projects-internship"},{"cve":"CVE-2026-92926","cvss":7.3,"epss":0.0043,"slug":"cve-2026-92926-code-projects-matrimonial-system-sql-injection-in-partner","title":"Code Projects Matrimonial System SQL injection in partner preferences","severity":"high","exploited":false,"published_at":"2026-09-17T18:17:14.93+00:00","url":"https://junglewise.ai/threats/cve-2026-92926-code-projects-matrimonial-system-sql-injection-in-partner"},{"cve":"CVE-2026-86180","cvss":7.3,"epss":0.0043,"slug":"cve-2026-86180-code-projects-task-management-system-sql-injection-in-email","title":"code-projects Task Management System SQL injection in email parameter","severity":"high","exploited":false,"published_at":"2026-09-06T08:16:41.91+00:00","url":"https://junglewise.ai/threats/cve-2026-86180-code-projects-task-management-system-sql-injection-in-email"},{"cve":"CVE-2026-85516","cvss":7.3,"epss":0.0043,"slug":"cve-2026-85516-code-projects-vehicle-management-system-sql-injection-in-busid","title":"code-projects Vehicle Management System SQL injection in busid parameter","severity":"high","exploited":false,"published_at":"2026-09-04T13:20:11.47+00:00","url":"https://junglewise.ai/threats/cve-2026-85516-code-projects-vehicle-management-system-sql-injection-in-busid"},{"cve":"CVE-2026-85399","cvss":7.3,"epss":0.0043,"slug":"cve-2026-85399-code-projects-hospital-information-system-sql-injection","title":"code-projects Hospital Information System SQL injection","severity":"high","exploited":false,"published_at":"2026-09-04T03:17:46.5+00:00","url":"https://junglewise.ai/threats/cve-2026-85399-code-projects-hospital-information-system-sql-injection"}],"generated_at":"2026-09-26T12:07:00.15149+00:00","technologies":[{"name":"Code-Projects Employee Management System","slug":"employee-management-system","vulnerabilities":11,"url":"https://junglewise.ai/threats/technologies/employee-management-system"},{"name":"Code-Projects Hotel and Tourism Reservation System","slug":"hotel-and-tourism-reservation-system","vulnerabilities":10,"url":"https://junglewise.ai/threats/technologies/hotel-and-tourism-reservation-system"},{"name":"Code-Projects Real State Services","slug":"real-state-services","vulnerabilities":9,"url":"https://junglewise.ai/threats/technologies/real-state-services"},{"name":"Code-Projects Simple Laundry System","slug":"simple-laundry-system","vulnerabilities":8,"url":"https://junglewise.ai/threats/technologies/simple-laundry-system"},{"name":"Code-Projects Hospital Information System","slug":"hospital-information-system","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/hospital-information-system"},{"name":"Code-Projects Online Music Site","slug":"online-music-site","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/online-music-site"},{"name":"Code-Projects Simple IT Discussion Forum","slug":"simple-it-discussion-forum","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/simple-it-discussion-forum"},{"name":"Code-Projects Assessment Management System","slug":"assessment-management-system","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/assessment-management-system"},{"name":"Code-Projects Online Hospital Management System","slug":"online-hospital-management-system","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/online-hospital-management-system"},{"name":"Code-Projects Online Job Portal","slug":"online-job-portal","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/online-job-portal"},{"name":"Code-Projects Online Shopping System","slug":"online-shopping-system","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/online-shopping-system"},{"name":"Code-Projects Simple Inventory System","slug":"simple-inventory-system","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/simple-inventory-system"},{"name":"Code-Projects Barangay Resident Profiling Management System","slug":"barangay-resident-profiling-management-system","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/barangay-resident-profiling-management-system"},{"name":"Code-Projects Online-Shoe-Store","slug":"online-shoe-store","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/online-shoe-store"},{"name":"Code-Projects Vehicle Management System","slug":"vehicle-management-system","vulnerabilities":3,"url":"https://junglewise.ai/threats/technologies/vehicle-management-system"}]}