CVE-2026-78221EPSS p1.5%
CVE-2026-78221CVE-2026-78221
Description
An incorrect buffer size calculation in the Windows Interactive Service in OpenVPN 2.7_alpha1 through 2.7.6 allows local authenticated users to cause memory corruption or disclose sensitive information via crafted NRPT inputs.
Scoring
| EPSS | 0.12% probability of exploitation · percentile 1.5% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-08 |