Ad

CVE-2026-90969

NONE
Обновлено 15 сентября 2026
Vault
Параметр Значение
Тип уязвимости CWE-284 (Неправильный контроль доступа)
Поставщик Vault
Публичный эксплойт Нет

Improper access control in the vault entry listing feature in Devolutions Server 2026.2.16 and earlier allows an authenticated user lacking the view-password permission to obtain cleartext passwords via a request to the entry listing endpoint with password disclosure parameters.