Zoraxy is a lightweight reverse-proxy and load-balancing application with a narrow vulnerability footprint centered on its core proxy product. The recurring exposure reflects path-traversal weaknesses in directory access controls, a class characteristic of file-serving and routing components. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Zoraxy over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-33529HIGH Zoraxy is a general purpose HTTP reverse proxy and forwarding tool. Prior to version 3.3.2, an authenticated path traversal vulnerability in the configuration import endpoint allow | Mar 26, 2026 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Zoraxy.
Media articles that mention a CVE ID that affects a product developed by Zoraxy — matched by CVE ID, not by vendor name.