Security & compliance
Upholding the highest standards to protect your data and ensure trust.

DEVO-2025-0017
Remote Desktop Manager and Devolutions Server are affected by a vulnerability.
Affected Products
Change Log
28/11/2025 - Initial publication
7.1 High - CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
AI Integration API Key Exposure
We identified an issue where API keys used for AI integrations could be visible to certain unauthorized authenticated users in our products. This exposure could have allowed misuse of the associated AI service, such as generating unauthorized usage or costs. The issue was limited to these AI API keys and did not provide additional privileges in our products or access to other sensitive data.
Affected Products
CVE(s)
CVE-2025-13683
Remediation and Workarounds
Upgrade to Remote Desktop Manager 2025.3.25.0 or higher
Upgrade to Devolutions Server 2025.3.10.0 or higher

