CVE-2026-16802
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
6.5 / 10
Vector String
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Vulnerability Description
Cleartext storage of sensitive information in the variables feature in Devolutions PowerShell Universal 2026.2.2 and earlier allows a local actor with file system access to read secret values via secret variables stored in cleartext on disk when no vault is selected.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-312
Source
NVD
Vendor
Devolutions
Product
PowerShell Universal
Discussion (0)
Add Comment
No comments yet. Be the first!