CVE-2025-12808
06.11.2025, 17:15
Improper access control in Devolutions Server 2025.3.5.0 and earlier allows a View-only userto retrieve sensitive third-level nested fields, such as password lists custom values, resulting in password disclosure.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration