Zyxel USG/ZyWALL/VPN VPN300 · Version Status

Zyxel USG/ZyWALL/VPN VPN300 End of Life Date

Zyxel USG/ZyWALL/VPN VPN300 end-of-life date, support status, and CVE risk. Data from endoflife.date and official vendor documentation.

Zyxel USG/ZyWALL/VPN VPN300 is past end of life. This version no longer receives security patches. 1068 days past EOL — migrate to a supported version immediately.
EOL Date
Sep 30, 2023
1068 days past EOL
Latest Release
5.37(ABFC.2)C0
Standard release
Release Date
Zyxel USG/ZyWALL/VPN VPN300 series
Extended Support
Mar 31, 2025
Extended support · ended
Lifecycle detail

It has been without security patches for 2 years and 11 months.

← Zyxel USG/ZyWALL/VPN VPN100 All Zyxel USG/ZyWALL/VPN versions Zyxel USG/ZyWALL/VPN VPN1000 →
70 / 100
High Risk
EOL Risk Score™  How is this calculated? →
EOL Recency
40/40
Attack Surface
10/30 Medium tier
CISA KEV Exposure
20/20 Named in CISA KEV
Extended Support
0/10 Available
EOL Risk Score™ — proprietary methodology by endoflife.ai. Factors: EOL recency, attack surface breadth, CISA KEV catalog presence, extended support availability. Updated at every build. Methodology →  ·  View score card →
Recommended upgrade path
Zyxel USG/ZyWALL/VPN USG20-VPN
Latest release: USG20-VPN · EOL: Jun 30, 2030
View full Zyxel USG/ZyWALL/VPN timeline →
Extended Support
Extended Zyxel USG/ZyWALL/VPN VPN300 support is available

Commercial vendors offer security patches beyond EOL. Compare your options.

Compare Options →
All Zyxel USG/ZyWALL/VPN Versions
VersionLatestEOL DateStatus
NSG300 1.33(ABOS.7)C0 Mar 31, 2022 EOL
NSG200 1.33(ABLD.7)C0 Mar 31, 2022 EOL
NSG100 1.33(ABEA.7)C0 Mar 31, 2022 EOL
NSG50 1.33(ABHP.7)C0 Mar 31, 2022 EOL
ZyWALL 1100 4.73(AAAC.2)C0 Dec 31, 2022 EOL
ZyWALL 310 4.73(AAAB.2)C0 Dec 31, 2022 EOL
ZyWALL 110 4.73(AAAA.2)C0 Dec 31, 2022 EOL
USG1900 4.73(AAPL.2)C0 Dec 31, 2022 EOL

What does Zyxel USG/ZyWALL/VPN VPN300 end of life mean?

When Zyxel USG/ZyWALL/VPN VPN300 reaches end of life, the maintainers stop issuing security patches for this version. CVEs discovered after the EOL date are publicly disclosed on the National Vulnerability Database with no patch available. Exploit code frequently appears on GitHub within days of disclosure.

The CVE blind spot: Most vulnerability scanners check for known CVEs but do not flag the ongoing accumulation of unpatched vulnerabilities in EOL software versions. Running Zyxel USG/ZyWALL/VPN VPN300 past its EOL date creates a permanently growing attack surface that standard security tooling will not surface.

Migrate to Zyxel USG/ZyWALL/VPN USG20-VPN or implement compensating controls — network segmentation, enhanced monitoring, restricted access — while migration is underway.

Frequently Asked Questions
When does Zyxel USG/ZyWALL/VPN VPN300 reach end of life?
Zyxel USG/ZyWALL/VPN VPN300 reached end of life on September 30, 2023. This version is no longer receiving security patches.
Is Zyxel USG/ZyWALL/VPN VPN300 still supported?
No. Zyxel USG/ZyWALL/VPN VPN300 reached end of life on September 30, 2023 and is no longer receiving security patches.
What should I upgrade to from Zyxel USG/ZyWALL/VPN VPN300?
The recommended upgrade from Zyxel USG/ZyWALL/VPN VPN300 is Zyxel USG/ZyWALL/VPN USG20-VPN — the latest actively supported version. Check the Zyxel USG/ZyWALL/VPN full timeline for all supported versions.
What are the security risks of running Zyxel USG/ZyWALL/VPN VPN300 past EOL?
When Zyxel USG/ZyWALL/VPN VPN300 reaches end of life, the maintainers stop issuing security patches. Any CVEs disclosed after the EOL date accumulate with no remediation path. Most vulnerability scanners do not flag this — it is the CVE blind spot. Organizations running EOL Zyxel USG/ZyWALL/VPN should migrate immediately or implement compensating controls.
Data from endoflife.date API · Generated at build time · How we source data →