CVE Database
/

CVE-2025-8353

Back to search

CVE-2025-8353

Published: Jul 30, 2025

Modified: Jul 30, 2025

PUBLISHED

Description

UI synchronization issue in the Just-in-Time (JIT) access request approval interface in Devolutions Server 2025.2.4.0 and earlier allows a remote authenticated attacker to gain unauthorized access to deleted JIT Groups via stale UI state during standard checkout request processing.

VendorProductVersions

Devolutions

Server

affected
0 - <= 2025.2.4.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now