CVE-2026-9223
EUVD-2026-3145522.05.2026, 16:16
Missing authorization in the vault import feature in Devolutions Server 2026.1.16.0 and earlier allows a low-privileged authenticated user to create new vaults via a crafted import request.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| devolutions | devolutions_server | 𝑥 < 2026.1.19.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
Vulnerability Media Exposure