{ "id": "CVE-2023-48957", "sourceIdentifier": "cve@mitre.org", "published": "2024-08-25T17:15:03.553", "lastModified": "2024-08-25T17:15:03.553", "vulnStatus": "Received", "cveTags": [], "descriptions": [ { "lang": "en", "value": "PureVPN Linux client 2.0.2-Productions fails to properly handle DNS queries, allowing them to bypass the VPN tunnel and be sent directly to the ISP or default DNS servers." } ], "metrics": {}, "references": [ { "url": "https://latesthackingnews.com/2023/11/13/multiple-vulnerabilities-found-in-purevpn-one-remains-unpatched/", "source": "cve@mitre.org" }, { "url": "https://www.rafaybaloch.com/2023/11/Multiple%20Critical-Vulnerabilities-in-PureVPN.html?m=1", "source": "cve@mitre.org" } ] }