CVE-2026-93330: Medium severity Devolutions Devolutions Server vulnerability
Published Sep 29, 2026
·Updated
Improper rule enforcement in the PAM Active Directory provider in Devolutions Server 2026.3.5 allows a user with PAM edit permissions to bypass the Devolutions Gateway host ruleset.
Affected Software
1 affected component
Devolutions Devolutions Server=2026.3.5
Event History
Sep 29, 2026
CVE Published
via MITRE·03:25 PM
Data Sourced
via MITRE·03:25 PM
DescriptionWeakness
Data Sourced
via NVD·04:17 PM
DescriptionSeverityWeakness