LOWVulnerability
CVE-2026-63650
OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified by ignoring the configured X.509 username identity lookup field
Properties
- epss_score
- 0.00228
- cve_id
- CVE-2026-63650
- published_at
- 2026-08-14T23:16:32.653
- last_modified
- 2026-09-01T21:03:04.987
- epss_percentile
- 0.13423
Related Entities (4)
ENRICHED_BY (1)
→[Source]FIRST EPSS
HAS_WEAKNESS (2)
→[Weakness]Misinterpretation of Input
→[Weakness]Improper Certificate Validation
DESCRIBED_BY (1)
→[Source]NVD
Explore deeper with Ninja Signal's threat intelligence graph