CVE-2018-25368
HIGH
NVD
CVSS Score
7.5
Severity
HIGH
Published
May 25, 2026
Vendor
unknown
Description
Nord VPN 6.14.31 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting an excessively long string in the password field. Attackers can paste a buffer of repeated characters into the password input field to trigger an application crash when attempting to authenticate.