Proxychains-ng is a narrow, utility-focused project centered on a single proxy-chaining library used to route network traffic through multiple proxies, commonly deployed in penetration testing and privacy-oriented tooling. The vulnerability record for this project is sparse, with a durable signal limited to the library's core function and interaction model. Current severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Proxychains Ng Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-34451HIGH rofl0r/proxychains-ng versions up to and including 4.17 and prior to commit cc005b7 contain a stack-based buffer overflow vulnerability in the function proxy_from_string() located | Dec 18, 2025 | 7.8 | 27 | NO | NO |
CVE-2015-3887HIGH Untrusted search path vulnerability in ProxyChains-NG before 4.9 allows local users to gain privileges via a Trojan horse libproxychains4.so library in the current working director | Sep 21, 2017 | 7.8 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Proxychains Ng Project.
Media articles that mention a CVE ID that affects a product developed by Proxychains Ng Project — matched by CVE ID, not by vendor name.