{"id":"CVE-2021-31606","aliases":["GHSA-5w5c-3g26-8mmc","PYSEC-2021-354"],"url":"https://o3.security/vulnerability/CVE-2021-31606","summary":"furlongm openvpn-monitor allows Authorization Bypass to disconnect arbitrary clients","details":"furlongm openvpn-monitor through 1.1.3 allows Authorization Bypass to disconnect arbitrary clients.","published":"2021-09-27T06:15:07.863Z","modified":"2026-07-09T01:06:46.402477Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"openvpn-monitor","fixedVersion":null}],"fix":{"url":"https://github.com/furlongm/openvpn-monitor/commit/ddb9d31ef0ec56f578bdacf99ebe9d68455ed8ca","label":"furlongm/openvpn-monitor@ddb9d31"},"references":[{"type":"ADVISORY","url":"http://packetstormsecurity.com/files/164274/OpenVPN-Monitor-1.1.3-Authorization-Bypass-Denial-Of-Service.html"},{"type":"ADVISORY","url":"https://github.com/furlongm/openvpn-monitor/releases"},{"type":"FIX","url":"https://github.com/furlongm/openvpn-monitor/commit/ddb9d31ef0ec56f578bdacf99ebe9d68455ed8ca"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-09T01:06:46.402477Z"}}