logo

Critical Privilege Escalation Flaw Fixed in OpenVPN Connect for macOS

ID: d8a13816-689e-5053-9514-d52a01ea7df5

STIX ID: report--d8a13816-689e-5053-9514-d52a01ea7df5

Feed Name: securityonline.info

Threat Score
75/100

Date Published: 2026-05-28

Date Updated: 2026-05-28

Author: Ddos

...
...

Security researchers disclosed a critical OpenVPN Connect macOS vulnerability (CVE-2026-9560, CVSS 9.4) affecting versions 3.5.1–3.8.1 where the privileged helper handles local IPC insecurely, enabling a local attacker to execute commands with root privileges; the vendor released v3.8.2 which fixes this issue and additional authentication/profile-management bugs and should be applied immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.