CVE-2026-15639
Reflected Cross-Site Scripting
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
An attacker can craft a malicious link that, if used by a legitimate user, may cause the user's browser to run JavaScript supplied by the attacker.
| CWE | CWE-79 |
| Vendor | delinea |
| Product | secret server (on-prem) |
| Published | Sep 15, 2026 |
| Last Updated | Sep 16, 2026 |
Stay Ahead of the Next One
Get instant alerts for delinea secret server (on-prem)
Be the first to know when new unknown vulnerabilities affecting delinea secret server (on-prem) are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Delinea / Secret Server (On-Prem)
10.2.19 โค 11.9.48
Credits
Aidan Stansfield - Division 5