HIGH
med-united
CVE published 2026-07-24
CVE-2026-54342
CVE-2026-54342 is a high-severity vulnerability in epa4all that allows an attacker on the network path to present a self-signed TLS certificate and intercept the connection. This issue has been patched in version 2026-05-20. The vulnerability affects epa4all prior to version 2026-05-20, allowing direct read and modification of inner traffic for non-VAU connections.