Vendor
Itsourcecode vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 103 vulnerabilities in Itsourcecode: 0 in the last 7 days and 59 in the last 90 days, 4 of them critical and 0 exploited in the wild. The most recent, CVE-2026-86267, was published on 7 September 2026. 13 technologies have a page of their own.
- Last 7 days
- 0
- Last 90 days
- 59
- Critical, all time
- 4
- Exploited in the wild
- 0
About Itsourcecode
A provider of source code, tutorials, and project management systems for educational purposes.
Itsourcecode technologies
- Itsourcecode Hospital Management System40
- Itsourcecode Online Medicine Delivery System11
- Itsourcecode Fees Management System9
- Itsourcecode Online Hotel Management System7
- Itsourcecode Electronic Judging System6
- Itsourcecode Construction Management System5
- Itsourcecode Content Management System4
- Itsourcecode Online Clinic Management System4
- Itsourcecode Online Student Enrollment System4
- Itsourcecode Courier-Management-System3
- Itsourcecode Hospital Management System Project In PHP3
- Itsourcecode Online House Rental System3
- Itsourcecode Student-Transcript-Processing-System3
Latest Itsourcecode vulnerabilities
- CVE-2026-86267: itsourcecode Society Management System SQL injection in check_student.phpmediumCVSS 6.3EPSS 0.3%
- CVE-2026-85208: itsourcecode Online Medicine Delivery System unrestricted file upload in order managementhighCVSS 7.3EPSS 0.5%
- CVE-2026-85207: itsourcecode Online Medicine Delivery System reflected XSS in orderdetailslowCVSS 3.5EPSS 0.4%
- CVE-2026-85205: itsourcecode Online Medicine Delivery System SQL injection in addwishlistmediumCVSS 6.3EPSS 0.3%
- CVE-2026-85187: itsourcecode Online Medicine Delivery System SQL injection in order status updatehighCVSS 7.3EPSS 0.4%
- CVE-2026-85186: itsourcecode Online Medicine Delivery System unrestricted file uploadmediumCVSS 6.3EPSS 0.4%
- CVE-2026-82615: itsourcecode Online Medicine Delivery System SQL injection in password recoveryhighCVSS 7.3EPSS 0.4%
- CVE-2026-82614: itsourcecode Online Medicine Delivery System SQL injection in product category filterhighCVSS 7.3EPSS 0.4%
- CVE-2026-82613: itsourcecode Online Medicine Delivery System SQL injection in product searchhighCVSS 7.3EPSS 0.4%
- CVE-2026-82612: itsourcecode Online Medicine Delivery System SQL injection in product detailhighCVSS 7.3EPSS 0.4%
- CVE-2026-82611: itsourcecode Online Medicine Delivery System SQL injection in loginhighCVSS 7.3EPSS 0.6%
- CVE-2026-82610: itsourcecode Online Medicine Delivery System SQL injection in loginhighCVSS 7.3EPSS 0.6%
- CVE-2026-78246: itsourcecode Online Clinic Management System SQL injection in admin loginhighCVSS 7.3EPSS 0.4%
- CVE-2026-78245: itsourcecode Online Pharmacy System unrestricted file upload in user registrationhighCVSS 7.3EPSS 0.5%
- CVE-2026-78244: itsourcecode Real Estate Management System SQL injection in search.phphighCVSS 7.3EPSS 0.4%
- CVE-2026-78112: itsourcecode Hospital Management System SQL injection in viewservicetype.phpmediumCVSS 6.3EPSS 0.3%
- CVE-2026-77025: itsourcecode Hospital Management System SQL injection in viewappointmentpending.phpmediumCVSS 6.3EPSS 0.3%
- CVE-2026-76991: itsourcecode Hospital Management System SQL injection in viewappointmentapprovedmediumCVSS 6.3EPSS 0.3%
- CVE-2026-19973: itsourcecode Hospital Management System SQL injection in /viewpaymentreport.phpmediumCVSS 6.3EPSS 0.3%
- CVE-2026-19972: itsourcecode Hospital Management System SQL injection in viewpatient.phpmediumCVSS 6.3EPSS 0.3%
- CVE-2026-16490: itsourcecode Hospital Management System SQL injection in prescription.phpmediumCVSS 6.3
- CVE-2026-16334: itsourcecode Hospital Management System SQL injection in prescriptionorder.phpmediumCVSS 6.3
- CVE-2026-16244: itsourcecode Hospital Management System SQL injection in prescriptionorderreport.phpmediumCVSS 6.3
- CVE-2026-16229: itsourcecode Courier Management System XSS in index.phpmediumCVSS 4.3
- CVE-2026-16131: itsourcecode Hospital Management System SQL injection in prescriptionrecord.phpmediumCVSS 6.3
Most severe Itsourcecode vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-36235: itsourcecode Online Student Enrollment System SQL injection in scheduleSubList.phpcriticalCVSS 9.8
- CVE-2026-36234: itsourcecode Online Student Enrollment System SQL injection in newCourse.phpcriticalCVSS 9.8
- CVE-2026-36233: itsourcecode Online Student Enrollment System SQL injection in assignInstructorSubjects.phpcriticalCVSS 9.8
- CVE-2026-36232: itsourcecode Online Student Enrollment System SQL injection in instructorClasses.phpcriticalCVSS 9.8
- CVE-2026-82611: itsourcecode Online Medicine Delivery System SQL injection in loginhighCVSS 7.3EPSS 0.6%
- CVE-2026-82610: itsourcecode Online Medicine Delivery System SQL injection in loginhighCVSS 7.3EPSS 0.6%
- CVE-2026-85208: itsourcecode Online Medicine Delivery System unrestricted file upload in order managementhighCVSS 7.3EPSS 0.5%
- CVE-2026-78245: itsourcecode Online Pharmacy System unrestricted file upload in user registrationhighCVSS 7.3EPSS 0.5%
- CVE-2026-85187: itsourcecode Online Medicine Delivery System SQL injection in order status updatehighCVSS 7.3EPSS 0.4%
- CVE-2026-82615: itsourcecode Online Medicine Delivery System SQL injection in password recoveryhighCVSS 7.3EPSS 0.4%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 28 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 5 | 0 | |
| 20 Jul 2026 | 3 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 5 | 0 | |
| 24 Aug 2026 | 3 | 0 | |
| 31 Aug 2026 | 11 | 0 | |
| 7 Sep 2026 | 1 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/itsourcecode.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Itsourcecode vulnerabilities", https://junglewise.ai/threats/vendors/itsourcecode, 26 September 2026.