CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. It affects Ivanti. It may be remotely exploitable.
CVE
CVE-2026-4914
Severity
MEDIUM
CVSS
5.4
EPSS
0.34%
Ivanti
Original NVD Description
Stored XSS in Ivanti N-ITSM before version 2025.4 allows a remote authenticated attacker to obtain limited information from other user sessions. User interaction is required.