37 exploited vulnerabilities in Haproxy
- Vendors
- Haproxy, Unknown, Nginx, Roxy-Wi, Apache, Alt Linux
- With known exploits
- 37
- Affected Roxy-wi versions
- < 6.1.1.0, 8.2.6.3, 6.3.5.0, 8.2.8.2, 6.3.9.0
- Affected Docker Haproxy Docker Image versions
- < 1.8.18
- Affected Puma versions
- < 4.3.12, 5.6.4
- Affected Haproxy versions
- β€ 3.4.0, 2.0.31, 2.2.29, 2.4.22, 2.5.12, 2.6.9, 2.7.3, 2.1.4, 2.8.2, 2.2.27, 2.4.21, 2.5.11, 2.6.8, 2.1.0, 2.3.0, 2.7.0, 2.9.10, 3.0.4, 3.1, 2.2.21, 2.3.18, 2.4.13, 2.2.16, 2.3.13, 2.4.3, 2.0.25, 2.2.17, 2.3.14, 2.4.4, 2.5, 2.0.6, 2.4.30, 2.6.23, 2.8.16, 3.0.12, 3.1.9, 3.2.6, 1.9.8, 2.0.2, 2.6.7, 2.0.32, 2.2.30, 2.4.23, 2.6.15, 2.7.10, 3.3.6, 2.0.24, 1.5, 1.5.0, 1.5.1, 1.5.2, 1.5.3
- Affected Wolfssl versions
- < 5.9.0
- Affected Haproxy Aloha Appliance versions
- < 14.5.33, 15.5.28, 16.5.19, 17.0.7
- Affected Haproxy Haproxy Enterprise versions
- = 2.4r1, 2.6r1, 2.8r1, 3.0r1, 3.1r1
- Affected Haproxy Kubernetes Ingress Controller versions
- < 1.9.14-ee7, 3.1.12, 1.11.12-ee10, 3.0.15-ee4
Vulnerabilities with exploits
Highest CVSS first β 7 of these already have exploit code on Sploitus
CVE-2022-31161 4 exploits
CVE-2022-31137 14 exploits
CVE-2020-35195
CVE-2026-45558
CVE-2022-24790
CVE-2026-55203
CVE-2023-25725 1 exploit
CVE-2020-11100
CVE-2026-27811
CVE-2026-55204
CVE-2023-45539 1 exploit
CVE-2023-0836
CVE-2026-45565
CVE-2024-45506
CVE-2023-25803
CVE-2022-0711
CVE-2021-39242
CVE-2021-40346 12 exploits
CVE-2021-39240
CVE-2019-18277
CVE-2026-3547
CVE-2026-22265
CVE-2025-11230
CVE-2019-14243
CVE-2019-14241
CVE-2023-25950
CVE-2023-40225
CVE-2025-32464
CVE-2023-29004
CVE-2025-34172
CVE-2019-8953 3 exploits
CVE-2026-33555 1 exploit
CVE-2024-49214
CVE-2021-39241
CVE-2014-6269
CVE-2026-26081
CVE-2026-26080