CyberRota Analysis
AI-GeneratedDevolutions PowerShell Universal versions 2026.2.2 and earlier are vulnerable due to improper access control, allowing authenticated users with only the Reader role to execute automation tests and alter workflow properties. This flaw arises from inadequate server-side authorization checks, potentially leading to unauthorized actions within the application. Organizations using affected versions should prioritize remediation to mitigate risks associated with unauthorized access and manipulation of automation workflows.
Original NVD Description
Improper access control in the automation tests and workflows features in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with only the Reader role to execute automation tests and modify workflow properties via missing server-side authorization checks.
Related CVEs
Other vulnerabilities affecting the same vendor(s)