Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Roxy-WI — Vulnerabilities & Security Advisories 32

All 32 CVE vulnerabilities found in Roxy-WI, with AI-generated Chinese analysis, references, and POCs.

This page documents the Common Weakness Enumeration (CWE) vulnerabilities associated with the roxy-wi web interface product. It aggregates a comprehensive list of security flaws ranging from injection attacks and cross-site scripting to improper access control mechanisms, covering reported issues from the earliest publicly known disclosures up to the most recent entries in the current database cycle. Visitors can use this resource to track vendor-specific advisories related to roxy-wi, gain a deeper understanding of specific weakness classes that impact this technology stack, and review the historical vulnerability landscape to assess the product’s long-term security posture and remediation trends. The data is structured to facilitate efficient research for security analysts, developers, and system administrators who need to evaluate risk exposure without sifting through unstructured news feeds or fragmented bug reports. By centralizing these entries, the page offers a clear view of how weaknesses manifest within the roxy-wi environment, highlighting patterns in error handling, configuration management, and authentication logic that have historically led to compromises. This systematic approach allows users to correlate specific weakness identifiers with their corresponding product versions and release timelines, thereby supporting informed decision-making regarding patching priorities and architectural reviews. The content is curated to maintain technical accuracy while providing a navigable framework for exploring the intersection of application design and security failures in this specific software ecosystem.

Vendor: hap-wi

CVE IDTitleCVSSSeverityPublished
CVE-2026-45569 Roxy-WI: Path-traversal patch in commit d4d10006 is a no-op (tuple-membership bug) CWE-22 8.1 High2026-06-10
CVE-2026-45567 Roxy-WI: Authentication bypass via 'api' substring in URL + unauthenticated /api/gpt CWE-287 8.3 High2026-06-10
CVE-2026-45566 Roxy-WI: Open redirect on /login?next= via basic-auth userinfo syntax bypass CWE-601 6.1 Medium2026-06-10
CVE-2026-45565 Roxy-WI: EscapedString validator skips its '..' block when stripping (root cause for several path-traversal/RCE vectors) CWE-20 8.1 High2026-06-10
CVE-2026-45564 Roxy-WI: Authenticated RCE via 'configver' URL parameter (os.system sink in /config/versions/.../save) CWE-78 8.8 High2026-06-10
CVE-2026-45563 Roxy-WI: IDOR — any authenticated user can read another user's full action history CWE-639 4.3 Medium2026-06-10
CVE-2026-45561 Roxy-WI: SSRF in /smon/agent/<endpoint>/<server_ip> reachable to cloud metadata IPs CWE-918 6.5 Medium2026-06-10
CVE-2026-45560 Roxy-WI: Stored XSS in log viewer (wrap_line/highlight_word produce unescaped HTML) CWE-79 6.1 Medium2026-06-10
CVE-2026-45559 Roxy-WI: LDAP injection in /user/ldap/<username> (admin-only) CWE-90 4.9 Medium2026-06-10
CVE-2026-45558 Roxy-WI: Authenticated RCE on every managed HAProxy load balancer via `option` field config injection in section save CWE-20 9.9 Critical2026-06-10
CVE-2026-45556 Roxy-WI: Authenticated arbitrary file write on every managed load balancer (and downstream RCE) via WAF rule save `config_file_name` CWE-20 9.9 Critical2026-06-10
CVE-2026-45550 Roxy-WI: IDOR on PUT /smon/check — any user can rewrite any tenant's monitoring URL/IP/body CWE-639 9.1 Critical2026-06-10
CVE-2026-45549 Roxy-WI: Authorization bypass on POST /smon/agent/action/<action> — guest can stop or restart smon-agent on any host CWE-862 8.5 High2026-06-10
CVE-2026-45552 Roxy-WI: Cross-tenant authorization bypass on /install/* — guest can run Ansible / SSH on every registered server CWE-639 9.9 Critical2026-06-10
CVE-2026-33208 Roxy-WI Vulnerable to Authenticated Remote Code Execution via OS Command Injection in find-in-config Endpoint CWE-78 8.8AIHighAI2026-04-24
CVE-2026-33078 Roxy-WI has SQL Injection in haproxy_section_save Endpoint via Unsanitized server_ip Parameter CWE-89 9.8AICriticalAI2026-04-24
CVE-2026-33077 Roxy-WI has an arbitrary file read vulnerability CWE-22 7.5AIHighAI2026-04-24
CVE-2026-33076 Roxy-WI vulnerable to path traversal and arbitrary file writing CWE-22 9.8AICriticalAI2026-04-24
CVE-2026-33432 Roxy-WI has Pre-Authentication LDAP Injection that Leads to Authentication Bypass CWE-287 7.5AIHighAI2026-04-20
CVE-2026-33431 Roxy-WI Vulnerable to Authenticated Arbitrary File Read via Path Traversal in Config Version Viewer CWE-24 8.1AIHighAI2026-04-20
CVE-2026-27811 Roxy-WI has a Command Injection via diff parameter in config comparison allows authenticated RCE CWE-77 8.8 High2026-03-17
CVE-2026-22265 Roxy-WI has a Command Injection via grep parameter in logs.py allows authenticated RCE CWE-78 7.5 High2026-01-15
CVE-2024-13129 Roxy-WI roxy.py action_service os command injection CWE-78 8.8 High2025-01-03
CVE-2024-43804 OS Command Injection via Port Scan Functionality in Roxy-WI CWE-78 8.8 High2024-08-29
CVE-2023-29004 Path Traversal Vulnerability in hap-wi/roxy-wi CWE-22 6.5 Medium2023-04-17
CVE-2023-25804 Roxy-WI vulnerable to Limited Path Traversal in name parameter CWE-22 7.5 High2023-03-15
CVE-2023-25802 Roxy-WI has Path Traversal vulnerability CWE-26 7.5 High2023-03-13
CVE-2023-25803 Roxy-WI 路径遍历漏洞 CWE-22 7.5 High2023-03-13
CVE-2022-31161 Roxy-WI Vulnerable to Unauthenticated Remote Code Execution via ssl_cert Upload CWE-77 10.0 Critical2022-07-15
CVE-2022-31137 Unauthenticated Remote Code Execution in Roxy-WI CWE-78 10.0 Critical2022-07-08

All 32 known CVE vulnerabilities affecting Roxy-WI with full Chinese analysis, references, and POCs where available.