CVE-2025-11958

Severity CVSS v4.0:
MEDIUM
Type:
CWE-20 Input Validation
Publication date:
22/10/2025
Last modified:
25/11/2025

Description

An improper input validation in the Security Dashboard ignored-tasks API of Devolutions Server 2025.2.15.0 and earlier allows an authenticated user to cause a denial of service to the Security Dashboard via a crafted request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:devolutions:devolutions_server:*:*:*:*:*:*:*:* 2025.2.15.0 (including)


References to Advisories, Solutions, and Tools