Unrated severityNVD Advisory· Published Sep 29, 2026
CVE-2026-100288
CVE-2026-100288
Description
Cleartext storage of sensitive information in the database in Devolutions Server 2026.3.5.0 and earlier allows an attacker with read access to the database to obtain external identity provider tokens and active session identifiers via direct inspection of stored records.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=2026.3.5.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.