Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 09 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Jun 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the quarantine and restore workflow of the X-VPN macOS website versions 77.0 through 77.5 allow a local attacker to leverage a race condition and symlink manipulation to achieve privileged file corruption. | |
| Title | X-VPN macOS website versions - Local Privilege Escalation | |
| First Time appeared |
X-vpn
X-vpn x-vpn Macos Website |
|
| Weaknesses | CWE-367 | |
| CPEs | cpe:2.3:a:x-vpn:x-vpn_macos_website:*:*:macos:*:*:*:*:* | |
| Vendors & Products |
X-vpn
X-vpn x-vpn Macos Website |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: Fluid Attacks
Published:
Updated: 2026-06-09T13:50:29.937Z
Reserved: 2026-02-17T19:47:28.172Z
Link: CVE-2026-2638
Updated: 2026-06-09T13:50:26.560Z
Status : Awaiting Analysis
Published: 2026-06-09T13:16:35.680
Modified: 2026-06-09T14:16:38.260
Link: CVE-2026-2638
No data.
OpenCVE Enrichment
Updated: 2026-06-09T20:21:04Z