CVE-2026-0610: Devolutions Server
Critical severity, CVSS 9.8. EPSS: 0.3% chance of exploitation in the next 30 days.
SQL Injection vulnerability in remote-sessions in Devolutions Server.This issue affects Devolutions Server 2025.3.1 through 2025.3.12
Affected products
- Devolutions Devolutions Server: from 2025.3.1.0, before 2025.3.14.0 (fixed in 2025.3.14.0)
Published 2026-01-19. Last modified 2026-06-17.