LIVE · cybersecurity feed
Live wire
vendor

Devolutions

14 CVEs published in the last four months. Exploited flaws first.

Critical0
High14
Medium0
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-168008.8highpowershell universalImproper control of generation of code ('Code Injection') in the schedule feature in Devolutions PowerShell Univer43d ago
CVE-2026-145368.8highdevolutions serverImproper enforcement of a mandatory multi-factor authentication policy in Devolutions Server 2026.2.9.0 allows an 61d ago
CVE-2026-175688.8highdevolutions serverImproper access control in the role membership management endpoint in Devolutions Server allows an authenticated n40d ago
CVE-2026-168018.8highpowershell universalImproper control of generation of code ('Code Injection') in the variables feature in Devolutions PowerShell Unive43d ago
CVE-2026-121618.8highremote desktop managerImproper input validation in the SSH Elevate Shell feature allows an authenticated user with permission to create 82d ago
CVE-2026-43968.1highhub reporting serviceImproper certificate validation in Devolutions Hub Reporting Service 2025.3.1.1 and earlier allows a network attack171d ago
CVE-2026-44348.1highdevolutions serverImproper certificate validation in the PAM propagation WinRM connections allows a network attacker to perform a man169d ago
CVE-2026-90477.6highdevolutions serverImproper handling of factor key state in the multi-factor authentication management feature in Devolutions Server a106d ago
CVE-2026-156377.5highdevolutions serverImproper authorization in the PAM SSH key and certificate retrieval endpoints in Devolutions Server 2026.2.11, 20253d ago
CVE-2026-106967.5highunigetuiUse of an incorrectly resolved name or reference in the pinget backend in Devolutions UniGetUI 2026.2.0 and earlie80d ago
CVE-2026-84977.4highpassword managerImproper certificate validation in the Devolutions Server connection handling in Devolutions Password Manager 2026.38d ago
CVE-2026-133727.2highremote desktop managerIncorrect link resolution by display name in the custom PowerShell VPN editor in Devolutions Remote Desktop Manage71d ago
CVE-2026-156417.1highdevolutions serverImproper authorization in the access request status endpoint in Devolutions Server 2026.2.11, 2026.1.22 allows an 53d ago
CVE-2026-73257.1highdevolutions serverImproper authorization in the Active Directory browsing feature in Devolutions Server allows a low-privileged authe106d ago

Filter the full tracker by Devolutions