JavaScript Injection Vulnerability in Delinea Products
CVE-2026-15639
9.3CRITICAL
What is CVE-2026-15639?
A JavaScript injection vulnerability allows attackers to create malicious links that, when interacted with by a legitimate user, may execute unauthorized JavaScript code within the user's browser. This could potentially lead to data breaches or unauthorized access to sensitive information. It is crucial for users of Delinea products to remain vigilant against such threats and implement recommended security measures to mitigate risks.
Affected Version(s)
Secret Server (On-Prem) 10.2.19 <= 11.9.48
