PatchSiren

Projectwolds CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW Projectwolds CVE published 2026-09-06

CVE-2026-86226

A security flaw has been discovered in Projectwolds Online Attendance System 1.0. Affected by this issue is some unknown functionality of the file profile.php. The manipulation of the argument email results in cross site scripting. The attack may be performed from remote. The exploit has been released to the public and may be used for attacks. This vulnerability could potentially allow attackers to inject [truncated]