We have just released dotProject 2.1.7 which is primarily a security and bug fix release. A number of XSS and SQL injection vulnerabilities have been reported to us and we have pulled out all stops to ensure they are now fixed. If you are running any version of dotProject, please consider upgrading as soon as possible.
In addition a number of usability issues have been fixed, and potential problems with upgrades for users on 2.1.1 and prior releases - so there is no excuse for not upgrading!
As usual you can download the release at https://sourceforge.net/projects/dotproject