A vulnerability, which was classified as very critical , was found in OpenWrt LuCI . Affected is an unknown function of the component OpenVPN . The manipulation of the argument instance_name2 results in path traversal. This vulnerability is identified as CVE-2026-72841 . The attack can be executed remotely. There is not any exploit available.