Credential Exposure in Devolutions Server by Devolutions
CVE-2025-13758

3.5LOW

Key Information:

Status
Vendor
CVE Published:
27 November 2025

What is CVE-2025-13758?

Devolutions Server has a vulnerability that allows the exposure of sensitive credentials through unintended requests. This issue affects specific versions of the software, making it crucial for users to remain vigilant and update to secured versions to prevent unauthorized access to sensitive information.

Affected Version(s)

Server 0 <= 2025.2.20

Server 0 <= 2025.3.8

References

CVSS V3.1

Score:
3.5
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.