CVE Vulnerabilities

CVE-2025-11619

Improper Certificate Validation

Published: Oct 15, 2025 | Modified: Oct 28, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Improper certificate validation when connecting to gateways in Devolutions Server 2025.3.2 and earlier allows attackersĀ in MitM position to intercept traffic.

Weakness

The product does not validate, or incorrectly validates, a certificate.

Affected Software

Name Vendor Start Version End Version
Devolutions_server Devolutions * 2025.2.15.0 (excluding)
Devolutions_server Devolutions 2025.3 (including) 2025.3.3.0 (excluding)

Potential Mitigations

References