Apisix

by Apache

Take action — actively targeted

Apisix is actively targeted by attackers. A significant proportion of its known vulnerabilities are being exploited.

What to do
  1. Apply all available updates immediately
  2. Review your exposure — is this internet-facing?
  3. Monitor vendor advisories for this product

What Attackers Target

Vulnerabilities with high exploit probability 50.0%
Confirmed actively exploited (CISA) 20.0%
Public exploit code available 0.0%
Based on 10 known vulnerabilities. Percentages show the proportion that are actively dangerous — a low percentage means most vulnerabilities in this product are not being exploited.

Most Dangerous Vulnerabilities

CVE CVSS Exploit Probability Confirmed
CVE-2022-24112 9.8 94.4% Yes
CVE-2023-44487 7.5 94.4% Yes
CVE-2020-13945 6.5 93.4%
CVE-2021-43557 7.5 58.3%
CVE-2022-29266 7.5 35.8%
CVE-2022-25757 9.8 0.4%
CVE-2024-32638 6.3 0.4%
CVE-2025-46647 5.3 0.1%
CVE-2025-62232 7.5 0.1%
CVE-2025-27446 7.8 0.0%
56
/ 100
high-risk
Active Threat 47/50 · Critical
Exploit Availability 9/50 · Minimal

Score uses Wilson score intervals to account for sample size. Products with few CVEs are scored conservatively.