CVE-2026-92237

Status: Received

Description

Insertion of sensitive information into log file in the slow query logging feature in Devolutions PowerShell Universal 2026.2.5 and earlier allows an authenticated user with log read permission to obtain application tokens, data protection key material and other stored credentials via SQL parameter values written to the system log on instances backed by Microsoft SQL Server.

Published
September 15, 2026 9:16 PM
Last Modified
September 15, 2026 9:16 PM
Source
[email protected]

Weaknesses (CWE)

CWE-532

References

Contact Us

Get the CyboWatch SIEM platform, hosting, and 24×7 SOC analysts. Call or email us to get started.