LIVE · cybersecurity feed
Live wire
vendor

Openvpn

9 CVEs published in the last four months. Exploited flaws first.

Critical1
High8
Medium0
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-133799.1criticalopenvpnThe Windows interactive service in OpenVPN 2.7_alpha1 through 2.7.4 allows remote attackers to cause persistent DN37d ago
CVE-2026-129328.1highopenvpnA memory leak in the tls-crypt-v2 client key extraction in OpenVPN 2.5.0 through 2.6.20 and 2.7_alpha1 through 2.737d ago
CVE-2026-131178.1highopenvpnAn incomplete guard in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers37d ago
CVE-2026-129968.1highopenvpnA use-after-free in OpenVPN 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote authenticated peers to37d ago
CVE-2026-95607.8highconnectPrivilege escalation via background service of OpenVPN Connect 3.5.1 through 3.8.1 on macOS allows attackers to exe102d ago
CVE-2026-117717.5highopenvpnOpenVPN version 2.1.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows attackers via an off-by-one buffer write 37d ago
CVE-2025-31107.5highopenvpn access serverOpenVPN Access Server 2.7.2 through 3.1.0 accepts bare line-feed sequences inside HTTP header values, allowing remo59d ago
CVE-2026-136987.5highopenvpnA memory leak in OpenVPN version 2.5.0 through 2.5.11, 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows re61d ago
CVE-2026-402157.4highopenvpnA race condition in OpenVPN 2.6.0 through 2.6.19 and 2.7_alpha1 through 2.7.1 allows remote attackers to potential89d ago

Filter the full tracker by Openvpn