
CVE-2026-29828 DooTask v1.6.27 has a Cross-Site Scripting (XSS) vulnerability in the /manage/project/<id> page via the input field projectDesc. https://www.cve.org/CVERecord?id=CVE-2026-29828
Post summary
The text discloses an XSS flaw in DooTask v1.6.27, specifying the vulnerable endpoint and input field, but does not mention exploits, patches, or active use.

