A vulnerability has been found in Akaunting 3.1.21 and classified as problematic . This affects an unknown part. This manipulation of the argument Description causes cross site scripting. This vulnerability is handled as CVE-2026-11994 . The attack can be initiated remotely. There is not any exploit available.