CVE-2026-93330
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
Sep 29, 2026
Vendor
unknown
Description
Improper rule enforcement in the PAM Active Directory provider in Devolutions Server 2026.3.5 allows a user with PAM edit permissions to bypass the Devolutions Gateway host ruleset.