Germany's dCERT published two advisories affecting Devolutions Server, first warning of multiple vulnerabilities in the product and later issuing a separate notice for a flaw that allows information disclosure. The advisories indicate that organizations using Devolutions Server face more than one security issue, with the later bulletin highlighting the risk that sensitive data could be exposed.
The sequence of notices suggests an expanding vulnerability picture for Devolutions Server, moving from a broader set of security weaknesses to a specifically identified disclosure issue. Security teams running the platform should review the vendor and dCERT advisories, determine affected versions, and prioritize remediation to reduce the risk of unauthorized access to exposed information and exploitation of any additional flaws covered by the earlier advisory.

See real exploitation activity before you spend the cycle.
2 events from the most recent confirmed update back to the earliest known activity.
dCERT issued Advisory 2026-1281 for a Devolutions Server vulnerability that allows information disclosure. The reference indicates this advisory was published on April 29, 2026.
dCERT issued Advisory 2026-0936 covering multiple vulnerabilities affecting Devolutions Server. The reference indicates this was publicly published on April 2, 2026.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.