vampirefreaks.com appears vulnerable to cross site scripting attacks.
5987d1b0538f1eca50aaf33bf200be30c3a04458cf104ac83570ff84713d54e4
yes the journal is exploitable aswell
there seem to be no filters on the journal title so you can simply put: "><script>alert('XSS')</script>
also the other places where you can update your journal etc. don't filter anything
proof:
http://vampirefreaks.com/journal.php?u=NanoyMaster