hap-wi Known Exploited Vulnerabilities
Evidence-backed KEV intelligence for hap-wi products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.
Total KEVs
3
In CISA KEV
0
Beyond CISA KEV
3
Sensor Observed
0
Virtual Patch Available
0
hap-wi KEVs Added by Year
Loading...
3 hap-wi KEVs added all time (primary attestation date).
Attested CVEs
| CVE | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2022-31126
Unauthenticated Remote Code Execution in Roxy-wi |
roxy-wi | High | Not in CISA | 08 Dec 2025 |
|
CVE-2022-31137
Unauthenticated Remote Code Execution in Roxy-WI |
roxy-wi | High | Not in CISA | 08 Nov 2025 |
|
CVE-2022-31161
Roxy-WI Vulnerable to Unauthenticated Remote Code Execution via ssl_cert Upload |
roxy-wi | High | Not in CISA | 18 Sep 2025 |
Common Vulnerability Classes (CWE)
- CWE-74 — Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') 1
- CWE-77 — Improper Neutralization of Special Elements used in a Command ('Command Injection') 1
- CWE-78 — Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') 1
- CWE-94 — Improper Control of Generation of Code ('Code Injection') 1
Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology