CVE-2026-41031
HIGH
NVD
CVSS Score
8.7
Severity
HIGH
Published
Jun 09, 2026
Vendor
unknown
Description
A Stored Cross-Site Scripting vulnerability in Vinna Process Monitor Version 4.0 Service Pack 1 (Build 63255) allows an authenticated remote attacker with low privileges to inject malicious JavaScript code into the application.Β This enables attackers to steal administrative access tokens and session credentials.