Expressvpn is a commercial VPN client offering focused on end-user privacy and tunneling, with its recorded vulnerability footprint centered on the core vpn application itself. The observed weakness classes recur around path-traversal and improper pathname handling, insecure credential or configuration storage, and integer boundary conditions—patterns typical of client software managing local state and network operations. Current exploitation activity, severity distribution, and exposure scope are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Expressvpn over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-29238HIGH An integer buffer overflow in the Nginx webserver of ExpressVPN Router version 1 allows remote attackers to obtain sensitive information when the server running as reverse proxy vi | Mar 10, 2021 | 7.5 | 46 | NO | YES |
CVE-2024-25728HIGH ExpressVPN before 12.73.0 on Windows, when split tunneling is used, sends DNS requests according to the Windows configuration (e.g., sends them to DNS servers operated by the user' | Feb 11, 2024 | 7.5 | 23 | NO | NO |
CVE-2018-15490HIGH An issue was discovered in ExpressVPN on Windows. The Xvpnd.exe process (which runs as a service with SYSTEM privileges) listens on TCP port 2015, which is used as an RPC interface | Jan 2, 2019 | 7.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Expressvpn.
Media articles that mention a CVE ID that affects a product developed by Expressvpn — matched by CVE ID, not by vendor name.