CVE-2023-0952: Devolutions Server

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

Improper access controls on entries in Devolutions Server 2022.3.12 and earlier could allow an authenticated user to access sensitive data without proper authorization.

Affected products

  • Devolutions Devolutions Server: up to and including 2022.3.12

Published 2023-03-01. Last modified 2026-06-17.