References https://cloud.tencent.com/developer/article/2622426 https://nvd.nist.gov/vuln/detail/CVE-2025-10680 https://community.openvpn.net/Security%20Announcements/CVE-2025-10680 https://medium.com/@talhaouimouad04/critical-openvpn-vulnerability-cve-2025-10680-exposes-systems-to-remote-command-execution-9cb98690b9fc https://dbugs.ptsecurity.com/vulnerability/PT-2025-43608 https://qkl.seebug.org/vuldb/ssvid-99360 https://www.exploit-db.com/exploits/34879 https://app.opencve.io/cve/?vendor=openvpn https://nvd.nist.gov/vuln/detail/CVE-2021-31605 https://github.com/advisories/GHSA-4258-vcjw-wwxx
Related VulnerabilitiesPoCopenvpn-as-config-exposure: OpenVPN Access Server - Configuration ExposurePoCCVE-2017-5868: OpenVPN Access Server 2.1.4 - CRLF InjectionPoCopenvpn-monitor-disclosure: OpenVPN Monitor DisclosurePoCopenvpn-admin: OpenVPN Admin Login Panel - Detect