GHSA-r6vr-3f2x-8mx5MediumCVSS 4.3

Improper rule enforcement in the PAM Active Directory provider in Devolutions Server 2026.3.5...

Published
September 29, 2026
Last Modified
September 29, 2026

🔗 CVE IDs covered (1)

📋 Description

Improper rule enforcement in the PAM Active Directory provider in Devolutions Server 2026.3.5 allows a user with PAM edit permissions to bypass the Devolutions Gateway host ruleset.

🔗 References (3)