CVE-2025-13683: Devolutions Server

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Exposure of credentials in unintended requests in Devolutions Server, Remote Desktop Manager on Windows.This issue affects Devolutions Server: through 2025.3.8.0; Remote Desktop Manager: through 2025.3.23.0.

Affected products

  • Devolutions Devolutions Server: before 2025.3.10.0 (fixed in 2025.3.10.0)
  • Devolutions Remote Desktop Manager: before 2025.3.25.0 (fixed in 2025.3.25.0)

Published 2025-11-28. Last modified 2026-06-17.