Security Advisory

CVE-2025-2280

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-13 13:02:47
Last updated 2025-03-19 13:22:55
Assigner DEVOLUTIONS
State PUBLISHED

Description

Improper access control in web extension restriction feature in Devolutions Server 2024.3.4.0 and earlier allows an authenticated user to bypass the browser extension restriction feature.