Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-8497

Improper certificate validation in the Devolutions Server connection handling in Devolutions Password Manager 2026.2.1.0 and earlier on Android, iOS, and macOS allows an adjacent-network attacker to intercept and modify sensitive information via a forged TLS certificate.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 0.3%
CVSS Severity
CVSS v3 Score 7.4
Products affected by CVE-2026-8497


Contact Us

Shodan ® - All rights reserved