Products: 1
    Vulnerabilities: 35
    Known Exploited: 0
    12
    Critical Level Threats
    16
    High Level Threats
    7
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-45569

    Roxy-WI: Path-traversal patch in commit d4d10006 is a no-op (tuple-membership bug)

    Last Modified: Jun 11, 2026
    Published: Jun 10, 2026

    CVE-2026-45567

    Roxy-WI: Authentication bypass via 'api' substring in URL + unauthenticated /api/gpt

    Last Modified: Jun 10, 2026
    Published: Jun 10, 2026

    CVE-2026-45566

    Roxy-WI: Open redirect on /login?next= via basic-auth userinfo syntax bypass

    Last Modified: Jun 10, 2026
    Published: Jun 10, 2026

    CVE-2026-45565

    Roxy-WI: EscapedString validator skips its '..' block when stripping (root cause for several path-traversal/RCE vectors)

    Last Modified: Jun 10, 2026
    Published: Jun 10, 2026

    CVE-2026-45564

    Roxy-WI: Authenticated RCE via 'configver' URL parameter (os.system sink in /config/versions/.../save)

    Last Modified: Jun 10, 2026
    Published: Jun 10, 2026
    Items Per Page
    Roxy-Wi Vulnerabilities & Security CVEs | CVE-DB