Junglewise Threat Intelligence

CVE-2026-13437: Devolutions PowerShell Universal information disclosure in AI Agent job API

CVE-2026-13437 · Severity: info · CVSS 8.5 · Published 2026-06-29

Technologies: Devolutions PowerShell Universal. Vendors: Devolutions.

Executive brief

Devolutions PowerShell Universal is an automation platform used to manage IT tasks and scripts. A security flaw in its AI Agent component allows users with basic access to view sensitive authentication tokens belonging to other, potentially more powerful accounts. An attacker could use these stolen tokens to impersonate high-level administrators and gain unauthorized control over the system.

Technical details

An information disclosure vulnerability (CWE-201) exists in the AI Agent job API of Devolutions PowerShell Universal version 2026.2.0. The vulnerability is caused by the insertion of sensitive App Tokens into API responses in plaintext during serialization. An authenticated attacker with 'AI Agent read' permissions can intercept these responses to obtain reusable, potentially higher-privileged authentication tokens. This allows for privilege escalation by reusing the leaked tokens to perform actions as other users or service accounts. The issue is resolved in version 2026.2.1.

Affected products

  • Devolutions PowerShell Universal 2026.2.0

Timeline

  • 2026-06-29: disclosed
  • 2026-06-29: advisory
  • 2026-06-29: patched: Fixed in version 2026.2.1

References

Related threats