---
id: CVE-2025-50055
title: >-
  Cross-site scripting (XSS) vulnerability in the SAML Authentication module in
  OpenVPN Access Server version 2.14.0 through 2.14.3 allows configured remote
  SAML Assertion Consumer Service (ACS) endpoint servers to inject arbitrary web
  scr…
summary: >-
  Cross-site scripting (XSS) vulnerability in the SAML Authentication module in
  OpenVPN Access Server version 2.14.0 through 2.14.3 allows configured remote
  SAML Assertion Consumer Service (ACS) endpoint servers to inject arbitrary web
  scr…
severity: medium
cvss: 6.4
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N'
cwe:
  - CWE-79
published: '2025-10-27'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T11:10:00.250'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-50055'
references:
  - url: 'https://openvpn.net/as-docs/as-3-0-release-notes.html#access-server-3-0-0'
    label: security@openvpn.net
tags:
  - nvd
epss: 0.00214
epssPercentile: 0.10792
ingestedAt: '2026-10-08T11:31:27.635Z'
---

## Overview

Cross-site scripting (XSS) vulnerability in the SAML Authentication module in OpenVPN Access Server version 2.14.0 through 2.14.3 allows configured remote SAML Assertion Consumer Service (ACS) endpoint servers to inject arbitrary web script or HTML via the RelayState parameter

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
