UI Synchronization Issue in Devolutions Server
CVE-2025-8353

Currently unrated

Key Information:

Vendor
CVE Published:
30 July 2025

What is CVE-2025-8353?

A UI synchronization issue in Devolutions Server, specifically in the Just-in-Time (JIT) access request approval interface, allows remote authenticated attackers to exploit stale user interface states. This vulnerability can lead to unauthorized access to deleted JIT Groups during the normal checkout request processing, presenting potential risks in security and data integrity. It's crucial for users of affected versions to apply necessary updates and patches to mitigate this issue.

References

Timeline

  • Vulnerability published

.