Improper access control in temporary access requests and checkout requests endpoints in Devolutions Server 2024.3.13 and earlier allows an authenticated user to access information about these requests via a known request ID.
| Software | From | Fixed in |
|---|---|---|
| devolutions / devolutions_server | - | 2025.1.3.0 |