Mozilla / Vpn
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-5687 | Local privilege escalation vulnerability in Mozilla VPN clients for macOS v2.27.0 and below. | HIGH | 7.8 | Jun 11, 2025 |
| CVE-2023-4104 | An invalid Polkit Authentication check and missing authentication requirements for D-Bus methods allowed any local user to configure arbitrary VPN setups. *Thi… | MEDIUM | 5.5 | Sep 11, 2023 |
| CVE-2022-0517 | Mozilla VPN can load an OpenSSL configuration file from an unsecured directory. A user or attacker with limited privileges could leverage this to launch arbitr… | HIGH | 7.8 | Dec 22, 2022 |
| CVE-2020-15679 | An OAuth session fixation vulnerability existed in the VPN login flow, where an attacker could craft a custom login URL, convince a VPN user to login via that… | HIGH | 7.6 | Dec 22, 2022 |
Showing 1 to 4 of 4 CVEs