CVE-2026-4989 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Improper input validation in the gateway health check feature in Devolutions Server allows a low-privileged authenticated user to perform server-side request fo…
Medium CVSS: 4.3

CVE-2026-4989

Improper input validation in the gateway health check feature in Devolutions Server allows a low-privileged authenticated user to perform server-side request forgery (SSRF), potentially leading to information disclosure, via a crafted API request.
This issue affects Server: from 2026.1.1 through 2026.1.11, from 2025.3.1 through 2025.3.17.
Vendor
Devolutions
Product
Devolutions Server
CWE
CWE-918
Yayın Tarihi
2026-04-01 16:23:51
Güncelleme
2026-04-03 19:13:27
Source Identifier
security@devolutions.net
KEV Date Added
-

Kategoriler

Referanslar