CVE-2026-63650
EUVD-2026-5881314.08.2026, 23:16
OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified by ignoring the configured X.509 username identity lookup fieldEnginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| openvpn | openvpn | 𝑥 < 2.7.6 | CNA |
Common Weakness Enumeration