edoc-doctor-appointment-system v1.0.1 is vulnerable to Cross Site Scripting (XSS) in admin/add-session.php via the "title" parameter.
https://github.com/omkaryepre/vulnerability-research/blob/main/CVE-2025-66918/readme.md
https://github.com/HashenUdara/edoc-doctor-appointment-system