CVE-2025-2280 Information

Description

Improper access control in web extension restriction feature in Devolutions Server 2024.3.13 and earlier allows an authenticated user to bypass the browser extension restriction feature.

Reference

https://devolutions.net/security/advisories/DEVO-2025-0004/

Share on: