VYPR
Unrated severityNVD Advisory· Published Oct 6, 2026· Updated Oct 6, 2026

CVE-2026-105488

CVE-2026-105488

Description

Missing authorization in the global vault in Devolutions Server 2026.3.7.0 and earlier allows an authenticated user with only the global vault view permission to modify and delete global contact and folder entries.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.