CVE-2026-9247
Insufficient logging in the entry export feature in Devolutions Server allows an authenticated user with export permissions to export a seal
CVSS
2.4
Bajo
EPSS
0.2%
p13
KEV
—
Exploit Today
4
0-100
Publicado: 22 may 2026 · Última mod.: 23 jul 2026 · CWE-778
0.2%EPSS · 30 días0.2%
2026-07-022026-07-29
Insufficient logging in the entry export feature in Devolutions Server allows an authenticated user with export permissions to export a sealed entry without triggering the unseal notification to administrators via a crafted export request. This issue affects : * Devolutions Server 2026.1.6.0 through 2026.1.16.0 * Devolutions Server 2025.3.20.0 and earlier
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-417092.7 BAJ—
———VMware ESX contains an insufficient logging vulnerability. A malicious administrator could exploit this issue to perform certain operations without them being logged.7hCVE-2026-34944.3 MED19.6%
——6In MariaDB server version through 11.8.5, when server audit plugin is enabled with server_audit_events variable configured with QUERY_DCL, QUERY_DDL, or QUERY_DML filtering, if an authenticated database user invokes a SQL statement prefixed with double-hyphen (—) or hash (#) style comments, the statement is not logged.16d