← Volver al buscador de CVEs

CVE-2026-16799

Devolutions PowerShell Universal

Descripción

Improper access control in the automation tests and workflows features in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with only the Reader role to execute automation tests and modify workflow properties via missing server-side authorization checks.

CVSS 5EPSS 0.152%Riesgo 0.51
Ver fuente
Publicación
2026-07-24 15:17:12
Versiones afectadas
<=2026.2.2
Tipo
Software crítico
Última modificación
2026-07-29 20:33:19
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N