CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It may be remotely exploitable.
CVE
CVE-2026-3204
Severity
CRITICAL
CVSS
9.8
EPSS
0.53%
Original NVD Description
Improper input validation in the error message page in Devolutions Server 2025.3.16 and earlier allows remote attackers to spoof the displayed error message via a specially crafted URL.
Related CVEs
Other vulnerabilities affecting the same vendor(s)