Vulnerabilities > Openvpn > Connect > 3.0.0

DATE CVE VULNERABILITY TITLE RISK
2024-01-08 CVE-2023-7224 Code Injection vulnerability in Openvpn Connect
OpenVPN Connect version 3.0 through 3.4.6 on macOS allows local users to execute code in external third party libraries using the DYLD_INSERT_LIBRARIES environment variable
local
low complexity
openvpn CWE-94
7.8
2023-10-17 CVE-2022-3761 Improper Certificate Validation vulnerability in Openvpn Connect
OpenVPN Connect versions before 3.4.0.4506 (macOS) and OpenVPN Connect before 3.4.0.3100 (Windows) allows man-in-the-middle attackers to intercept configuration profile download requests which contains the users credentials
network
high complexity
openvpn CWE-295
5.9