What the vulnerability does

01Description

SQL Injection vulnerability in remote-sessions in Devolutions Server.This issue affects Devolutions Server 2025.3.1 through 2025.3.12

Key dates

02Disclosure timeline

January 19, 2026 CVE published
January 20, 2026 Record updated