CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-9226: Server 0 to before 2026.3.8

Affected technology

Server · 0 to before 2026.3.8
Devolutions

Description’s affected range: 2026.3.7.0 and earlier

Component: Not specified by the source

What an attacker can do

A remote attacker can take over a user's account via replay of a captured login-session token exposed in a redirect URL.

Published

CWE
CWE-294
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-9226.html