Nordvpn is a consumer VPN service with a focused product footprint, and disclosed vulnerabilities cluster around authentication bypass, memory-safety handling, OS command injection, and permission-assignment issues that affect the integrity of the tunneling client. These weakness classes are characteristic of network software where authentication boundaries and privilege separation are critical to the security model. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Nordvpn over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-25368HIGH Nord VPN 6.14.31 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting an excessively long string in the password | May 25, 2026 | 7.5 | 31 | NO | NO |
CVE-2018-3952HIGH An exploitable code execution vulnerability exists in the connect functionality of NordVPN 6.14.28.0. A specially crafted configuration file can cause a privilege escalation, resul | Sep 7, 2018 | 8.8 | 28 | NO | NO |
CVE-2018-9105HIGH NordVPN 3.3.10 for macOS suffers from a root privilege escalation vulnerability. The vulnerability stems from its privileged helper tool's implemented XPC service. This XPC service | Mar 27, 2018 | 8.8 | 27 | NO | NO |
CVE-2018-10170CRITICAL NordVPN 6.12.7.0 for Windows suffers from a SYSTEM privilege escalation vulnerability through the "nordvpn-service" service. This service establishes an NetNamedPipe endpoint that | Apr 16, 2018 | 9.8 | 25 | NO | NO |
CVE-2019-25572MEDIUM NordVPN 6.19.6 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string in the email input field. At | Mar 21, 2026 | 6.2 | 22 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Nordvpn.
Media articles that mention a CVE ID that affects a product developed by Nordvpn — matched by CVE ID, not by vendor name.