CVE-2026-9226
EUVD-2026-9377906.10.2026, 19:18
Authentication bypass in the Azure AD external login flow in Devolutions Server 2026.3.7.0 and earlier allows a remote attacker to take over a user's account via replay of a captured login-session token exposed in a redirect URL.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.