NordVPN 6.19.6 contains a denial of service vulnerability that allows local attackers to crash the application by submitting an excessively long string in the email input field. Attackers can paste a buffer of 100,000 characters into the email field during login to trigger an application crash.
References
Configurations
No configuration.
History
21 Mar 2026, 13:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-03-21 13:16
Updated : 2026-03-23 14:31
NVD link : CVE-2019-25572
Mitre link : CVE-2019-25572
CVE.ORG link : CVE-2019-25572
JSON object : View
Products Affected
No product.
CWE
CWE-1260
Improper Handling of Overlap Between Protected Memory Ranges
