โ† Back to Dashboard

CVE-2026-17568

HIGH NVD
CVSS Score
8.8
Severity
HIGH
Source
NVD
Published
Jul 27, 2026
Description

Improper access control in the role membership management endpoint in Devolutions Server allows an authenticated non-administrative user holding the user-group membership management permission to escalate privileges to administrator via a crafted API request. This issue affects : * Devolutions Server 2026.2.4.0 through 2026.2.12.0 * Devolutions Server 2026.1.23.0 and earlier

View Full Details โ† Back