CVE-2022-24112CISA KEVEPSS p99.9%

CVE-2022-24112Apache APISIX Authentication Bypass Vulnerability

Apache / APISIX

Description

Apache APISIX contains an authentication bypass vulnerability that allows for remote code execution.

Scoring

EPSS96.18% probability of exploitation · percentile 99.9% · 2026-06-15T12:03:41Z

CISA KEV entry

Added to KEV: 2022-08-25

(incoming)1

TypeTargetConfidenceTier
KEVEntryApache APISIX Authentication Bypass Vulnerabilitykev-cve-2022-241120%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2026-31908
CVE
CVE-2025-29902
CVE
CVE-2026-23899
CVE
Apache Log4j2 Remote Code Execution Vulnerability
CVE
Apache HTTP Server Path Traversal Vulnerability
CVE
Citrix Application Delivery Controller (ADC) and Gateway Authentication Bypass Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.