Devolutions Server SQL Injection Vulnerability in Last Usage Logs

Vulnerability

A SQL injection vulnerability has been identified in Devolutions Server, affecting versions through 2025.2.20 and through 2025.3.8. This vulnerability arises in the last usage logs, where improper input validation allows for SQL injection attacks.

Impact

Exploitation of this vulnerability allows for SQL injection, where an attacker can manipulate SQL queries to execute arbitrary SQL code, potentially leading to unauthorized data access or modification.

Added: Nov 27, 2025, 4:19 PM
Updated: Nov 27, 2025, 4:19 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
5.0
exploitability
7.4
remediation
0.0
relevance
1.2
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.