Security Advisory

CVE-2026-13122

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-06 14:32:29
Last updated 2026-07-06 15:51:50
Assigner OpenVPN
CVSS score 5.9
State PUBLISHED

Description

OpenVPN version 2.6.0 through 2.6.20 and 2.7_alpha1 through 2.7.4 allows remote attackers to cause a denial of service via a malformed authentication token that triggers a reachable assertion when external-auth is enabled