What the vulnerability does

01Description

Exposure of credentials in unintended requests in Devolutions Server, Remote Desktop Manager on Windows.This issue affects Devolutions Server: through 2025.3.8.0; Remote Desktop Manager: through 2025.3.23.0.

Key dates

02Disclosure timeline

November 28, 2025 CVE published
November 28, 2025 Record updated