{"resultsPerPage":5,"startIndex":0,"totalResults":5,"format":"NVD_CVE","version":"2.0","timestamp":"2026-10-09T17:22:30.878","vulnerabilities":[{"cve":{"id":"CVE-2023-50446","sourceIdentifier":"cve@mitre.org","published":"2023-12-10T17:15:07.070","lastModified":"2026-06-17T06:39:38.870","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"An issue was discovered in Mullvad VPN Windows app before 2023.6-beta1. Insufficient permissions on a directory allow any local unprivileged user to escalate privileges to SYSTEM."},{"lang":"es","value":"Se descubrió un problema en la aplicación Mullvad VPN para Windows antes de 2023.6-beta1. Los permisos insuficientes en un directorio permiten que cualquier usuario local sin privilegios escale privilegios al SYSTEM."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-732"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mullvad:mullvad_vpn:*:*:*:*:*:windows:*:*","versionEndIncluding":"2023.5","matchCriteriaId":"FE432DB4-AEAB-435D-88D2-09633CA56BB5"}]}]}],"references":[{"url":"https://github.com/mullvad/mullvadvpn-app/pull/5398","source":"cve@mitre.org","tags":["Patch","Vendor Advisory"]},{"url":"https://github.com/mullvad/mullvadvpn-app/releases/tag/2023.6","source":"cve@mitre.org","tags":["Release Notes"]},{"url":"https://github.com/mullvad/mullvadvpn-app/releases/tag/2023.6-beta1","source":"cve@mitre.org","tags":["Release Notes"]},{"url":"https://github.com/mullvad/mullvadvpn-app/pull/5398","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"]},{"url":"https://github.com/mullvad/mullvadvpn-app/releases/tag/2023.6","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Release Notes"]},{"url":"https://github.com/mullvad/mullvadvpn-app/releases/tag/2023.6-beta1","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Release Notes"]}]}},{"cve":{"id":"CVE-2024-34446","sourceIdentifier":"cve@mitre.org","published":"2024-05-03T15:15:08.210","lastModified":"2026-06-17T07:33:25.597","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"Mullvad VPN through 2024.1 on Android does not set a DNS server in the blocking state (after a hard failure to create a tunnel), and thus DNS traffic can leave the device. Data showing that the affected device was the origin of sensitive DNS requests may be observed and logged by operators of unintended DNS servers."},{"lang":"es","value":"Mullvad VPN hasta 2024.1 en Android no configura un servidor DNS en estado de bloqueo (después de un error grave al crear un túnel) y, por lo tanto, el tráfico DNS puede salir del dispositivo. Los operadores de servidores DNS no deseados pueden observar y registrar datos que muestren que el dispositivo afectado fue el origen de solicitudes DNS confidenciales."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","affectedData":[{"vendor":"mullvad","product":"mullvad_vpn","defaultStatus":"unknown","cpes":["cpe:2.3:a:mullvad:mullvad_vpn:*:*:*:*:*:*:*:*"],"versions":[{"version":"0","lessThanOrEqual":"2024.1","versionType":"custom","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","baseScore":7.5,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":3.6}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-07-15T15:52:10.292772Z","id":"CVE-2024-34446","options":[{"exploitation":"poc"},{"automatable":"yes"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-923"}]}],"references":[{"url":"https://github.com/mullvad/mullvadvpn-app/blob/main/CHANGELOG.md","source":"cve@mitre.org"},{"url":"https://github.com/mullvad/mullvadvpn-app/commit/0c39306a40f426853d617e20d596942e41091f13","source":"cve@mitre.org"},{"url":"https://github.com/mullvad/mullvadvpn-app/tags","source":"cve@mitre.org"},{"url":"https://mullvad.net/en/blog/dns-traffic-can-leak-outside-the-vpn-tunnel-on-android","source":"cve@mitre.org"},{"url":"https://news.ycombinator.com/item?id=40247604","source":"cve@mitre.org"},{"url":"https://github.com/mullvad/mullvadvpn-app/blob/main/CHANGELOG.md","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/mullvad/mullvadvpn-app/commit/0c39306a40f426853d617e20d596942e41091f13","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://github.com/mullvad/mullvadvpn-app/tags","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://mullvad.net/en/blog/dns-traffic-can-leak-outside-the-vpn-tunnel-on-android","source":"af854a3a-2127-422b-91ae-364da2661108"},{"url":"https://news.ycombinator.com/item?id=40247604","source":"af854a3a-2127-422b-91ae-364da2661108"}]}},{"cve":{"id":"CVE-2024-55884","sourceIdentifier":"cve@mitre.org","published":"2024-12-12T02:08:23.127","lastModified":"2026-06-17T08:11:24.230","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"In the Mullvad VPN client 2024.6 (Desktop), 2024.8 (iOS), and 2024.8-beta1 (Android), the exception-handling alternate stack can be exhausted, leading to heap-based out-of-bounds writes in enable() in exception_logging/unix.rs, aka MLLVD-CR-24-01. NOTE: achieving code execution is considered non-trivial."},{"lang":"es","value":"En Mullvad VPN client 2024.6 (Escritorio), 2024.8 (iOS) y 2024.8-beta1 (Android), la pila alternativa de manejo de excepciones se puede agotar, lo que genera escrituras fuera de los límites basadas en el montón en enable() en exception_logging/unix.rs, también conocido como MLLVD-CR-24-01. NOTA: lograr la ejecución del código se considera no trivial."}],"affected":[{"source":"cve@mitre.org","affectedData":[{"vendor":"n/a","product":"n/a","versions":[{"version":"n/a","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"cve@mitre.org","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","baseScore":9.0,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"CHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.2,"impactScore":6.0}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-12-12T16:15:36.813815Z","id":"CVE-2024-55884","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","description":[{"lang":"en","value":"CWE-787"}]}],"references":[{"url":"https://github.com/mullvad/mullvadvpn-app/commit/ef6c862071b26023802b00d6e1dc6ca53d1ab3e6","source":"cve@mitre.org"},{"url":"https://news.ycombinator.com/item?id=42390768","source":"cve@mitre.org"},{"url":"https://x41-dsec.de/news/2024/12/11/mullvad/","source":"cve@mitre.org"}]}},{"cve":{"id":"CVE-2026-32323","sourceIdentifier":"security-advisories@github.com","published":"2026-05-19T02:16:14.367","lastModified":"2026-07-24T13:10:00.223","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"Mullvad VPN is a VPN client app for desktop and mobile. When using macOS with versions 2026.1 and below, Mullvad VPN may allow local privilege escalation during installation or upgrade. The installer package executes binaries from /Applications/Mullvad VPN.app without verifying if the bundle is attacker-controlled or that the path is the legitimate Mullvad application. A user in the admin group can pre-place a crafted application bundle at that location and may be able to achieve code execution as root. Since the issue only affected the installer, there is no immediate need for users to update if they are already running an older version. This issue has been fixed in version 2026.2-beta1."},{"lang":"es","value":"Mullvad VPN es una aplicación VPN cliente para escritorio y móvil. Cuando se usa macOS con versiones 2026.1 e inferiores, Mullvad VPN puede permitir la escalada de privilegios local durante la instalación o actualización. El paquete del instalador ejecuta binarios desde /Applications/Mullvad VPN.app sin verificar si el paquete está controlado por el atacante o si la ruta es la aplicación legítima de Mullvad. Un usuario en el grupo de administradores puede precolocar un paquete de aplicación manipulado en esa ubicación y podría lograr la ejecución de código como root. Dado que el problema solo afectó al instalador, no hay una necesidad inmediata de que los usuarios actualicen si ya están ejecutando una versión anterior. Este problema ha sido solucionado en la versión 2026.2-beta1."}],"affected":[{"source":"security-advisories@github.com","affectedData":[{"vendor":"mullvad","product":"mullvadvpn-app","versions":[{"version":"< 2026.2-beta1","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"security-advisories@github.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H","baseScore":7.3,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.3,"impactScore":5.9},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2026-05-19T00:00:00+00:00","id":"CVE-2026-32323","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"security-advisories@github.com","type":"Secondary","description":[{"lang":"en","value":"CWE-269"},{"lang":"en","value":"CWE-345"},{"lang":"en","value":"CWE-427"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mullvad:mullvad_vpn:*:*:*:*:*:macos:*:*","versionEndExcluding":"2026.2","matchCriteriaId":"A307F061-DF0B-4627-9B9C-59465A0AE587"}]}]}],"references":[{"url":"https://github.com/mullvad/mullvadvpn-app/commit/032fdcb927c0b6d3e5e1aba4140d33adf22a6bfb","source":"security-advisories@github.com","tags":["Patch"]},{"url":"https://github.com/mullvad/mullvadvpn-app/security/advisories/GHSA-c2g6-w5fq-vw3m","source":"security-advisories@github.com","tags":["Vendor Advisory"]}]}},{"cve":{"id":"CVE-2026-19380","sourceIdentifier":"cna@vuldb.com","published":"2026-08-10T01:16:48.163","lastModified":"2026-08-12T20:59:21.023","vulnStatus":"Deferred","cveTags":[],"descriptions":[{"lang":"en","value":"A vulnerability was identified in Mullvad wireguard.sys 0.10.1. The affected element is the function AdapterState of the component IOCTL Handler. Such manipulation leads to improper update of reference count. Local access is required to approach this attack. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure."}],"affected":[{"source":"cna@vuldb.com","affectedData":[{"vendor":"Mullvad","product":"wireguard.sys","cpes":["cpe:2.3:a:mullvad:wireguard.sys:*:*:*:*:*:*:*:*"],"modules":["IOCTL Handler"],"versions":[{"version":"0.10.1","status":"affected"}]}]}],"metrics":{"cvssMetricV40":[{"source":"cna@vuldb.com","type":"Secondary","cvssData":{"version":"4.0","vectorString":"CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","baseScore":1.8,"baseSeverity":"LOW","attackVector":"LOCAL","attackComplexity":"LOW","attackRequirements":"NONE","privilegesRequired":"HIGH","userInteraction":"NONE","vulnConfidentialityImpact":"NONE","vulnIntegrityImpact":"NONE","vulnAvailabilityImpact":"LOW","subConfidentialityImpact":"NONE","subIntegrityImpact":"NONE","subAvailabilityImpact":"NONE","exploitMaturity":"PROOF_OF_CONCEPT","confidentialityRequirement":"NOT_DEFINED","integrityRequirement":"NOT_DEFINED","availabilityRequirement":"NOT_DEFINED","modifiedAttackVector":"NOT_DEFINED","modifiedAttackComplexity":"NOT_DEFINED","modifiedAttackRequirements":"NOT_DEFINED","modifiedPrivilegesRequired":"NOT_DEFINED","modifiedUserInteraction":"NOT_DEFINED","modifiedVulnConfidentialityImpact":"NOT_DEFINED","modifiedVulnIntegrityImpact":"NOT_DEFINED","modifiedVulnAvailabilityImpact":"NOT_DEFINED","modifiedSubConfidentialityImpact":"NOT_DEFINED","modifiedSubIntegrityImpact":"NOT_DEFINED","modifiedSubAvailabilityImpact":"NOT_DEFINED","Safety":"NOT_DEFINED","Automatable":"NOT_DEFINED","Recovery":"NOT_DEFINED","valueDensity":"NOT_DEFINED","vulnerabilityResponseEffort":"NOT_DEFINED","providerUrgency":"NOT_DEFINED"}}],"cvssMetricV31":[{"source":"cna@vuldb.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L","baseScore":2.3,"baseSeverity":"LOW","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"LOW"},"exploitabilityScore":0.8,"impactScore":1.4}],"cvssMetricV2":[{"source":"cna@vuldb.com","type":"Secondary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:M/C:N/I:N/A:P","baseScore":1.4,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"MULTIPLE","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"PARTIAL"},"baseSeverity":"LOW","exploitabilityScore":2.5,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2026-08-10T19:16:20.509820Z","id":"CVE-2026-19380","options":[{"exploitation":"poc"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"cna@vuldb.com","type":"Secondary","description":[{"lang":"en","value":"CWE-664"},{"lang":"en","value":"CWE-911"}]}],"references":[{"url":"https://drive.google.com/file/d/1LN68wxIx_2EI4IBVq13UlP4G1aqyz--x/view?usp=sharing","source":"cna@vuldb.com"},{"url":"https://vuldb.com/cve/CVE-2026-19380","source":"cna@vuldb.com"},{"url":"https://vuldb.com/submit/866726","source":"cna@vuldb.com"},{"url":"https://vuldb.com/vuln/387273","source":"cna@vuldb.com"},{"url":"https://vuldb.com/vuln/387273/cti","source":"cna@vuldb.com"}]}}]}