CVE-2026-9245 — Improper input validation in the external authentication provider flow in Devolutions Server allows an unauthenticated remote attacker to redirect victims to an attacker-controlled domain via a crafte — CVE Database · The Intelligence Room