Stats Digest Feeds
← Back to all CVEs

CVE-2026-9223

MEDIUM devolutions devolutions_server NVD
CVSS Score 4.3
Severity MEDIUM
Published May 22, 2026
Vendor devolutions

Description

Missing authorization in the vault import feature in Devolutions Server  2026.1.16.0 and earlier allows a low-privileged authenticated user to create new vaults via a crafted import request.

References