Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 26 May 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 25 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nord VPN 6.14.31 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting an excessively long string in the password field. Attackers can paste a buffer of repeated characters into the password input field to trigger an application crash when attempting to authenticate. | |
| Title | Nord VPN 6.14.31 Denial of Service via Password Field | |
| First Time appeared |
Nordvpn
Nordvpn nordvpn |
|
| Weaknesses | CWE-789 | |
| CPEs | cpe:2.3:a:nordvpn:nordvpn:*:*:*:*:*:macos:*:* | |
| Vendors & Products |
Nordvpn
Nordvpn nordvpn |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-05-26T15:22:10.344Z
Reserved: 2026-05-25T13:35:56.999Z
Link: CVE-2018-25368
Updated: 2026-05-26T15:22:06.034Z
Status : Deferred
Published: 2026-05-25T15:16:19.590
Modified: 2026-06-17T01:55:19.730
Link: CVE-2018-25368
No data.
OpenCVE Enrichment
Updated: 2026-05-25T16:30:15Z