OpenVPN / Access Server
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-3110 | OpenVPN Access Server: OpenVPN Access Server: HTTP request smuggling via bare line-feed sequences in HTTP headers | MEDIUM | 6.9 | Jul 8, 2026 |
| CVE-2025-50055 | Cross-site scripting (XSS) vulnerability in the SAML Authentication module in OpenVPN Access Server version 2.14.0 through 2.14.3 allows configured remote SAML… | MEDIUM | 6.4 | Oct 27, 2025 |
| CVE-2023-46850 | Use after free in OpenVPN version 2.6.0 to 2.6.6 may lead to undefined behavoir, leaking memory buffers or remote execution when sending network buffers to a r… | CRITICAL | 9.8 | Nov 11, 2023 |
| CVE-2023-46849 | Using the --fragment option in certain configuration setups OpenVPN version 2.6.0 to 2.6.6 allows an attacker to trigger a divide by zero behaviour which could… | HIGH | 7.5 | Nov 11, 2023 |
Showing 1 to 4 of 4 CVEs