Home

Description

Privilege escalation via background service of OpenVPN Connect 3.5.1 through 3.8.1 on macOS allows attackers to execute arbitrary commands with elevated privileges via local IPC channel

PUBLISHED Reserved 2026-05-26 | Published 2026-05-26 | Updated 2026-05-27 | Assigner OpenVPN




CRITICAL: 9.4CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

HIGH: 8.9CVSS:4.0/AV:N/AC:H/AT:P/PR:N/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

Problem types

CWE-78

CWE-267 Privilege defined with unsafe actions

CWE-270 Privilege context switching error

CWE-648 Incorrect use of privileged APIs

Product status

Default status
unaffected

3.5.1 (semver)
affected

References

openvpn.net/connect-docs/macos-release-notes.html release-notes

cve.org (CVE-2026-9560)

nvd.nist.gov (CVE-2026-9560)

Download JSON