VYPR

Server

by Devolutions

CVEs (2)

  • CVE-2026-10786MedJun 8, 2026
    risk 0.42cvss 6.5epss

    Improper access control in the ticketing integration settings in Devolutions Server allows an authenticated low-privileged user to obtain cleartext credentials for configured ticketing integrations via a crafted API request. This issue affects : * Devolutions Server…

  • CVE-2026-10787Jun 8, 2026
    risk 0.00cvss epss

    Missing authorization in the deleted user groups API in Devolutions Server allows an authenticated low-privileged user to enumerate metadata of deleted user groups via a crafted API request. This issue affects : * Devolutions Server 2026.2.4.0 * Devolutions Server…