← back
CVE-2026-41031

A Stored Cross-Site Scripting (XSS) vulnerability occurs in Vinna Process Monitor

CVSS 9.3 CRITICALEPSS 0.2%CWE-79
A Stored Cross-Site Scripting vulnerability in Vinna Process Monitor Version 4.0 Service Pack 1 (Build 63255) allows an authenticated remote attacker with low privileges to inject malicious JavaScript code into the application. This enables attackers to steal administrative access tokens and session credentials.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:N/SC:H/SI:H/SA:H

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →