Student Attendance Management System v1 was discovered to contain a cross-site scripting (XSS) vulnerability via the sessionName parameter at createSessionTerm.php.
https://github.com/rickxy/Student-Attendance-Management-System
https://gist.github.com/celbahraoui/412085648b1e8131aee9456e15177524