CH22
42 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for CH22, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
CH22 CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 2 |
| 2025-07 | 1 |
| 2025-08 | 4 |
| 2025-09 | 3 |
| 2025-10 | 13 |
| 2025-11 | 2 |
| 2025-12 | 3 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 6 |
| 2026-04 | 3 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 1 |
| 2026-08 | 4 |
| 2026-09 | 0 |
Severity
How the 42 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical2
- High38
- Medium2
Latest CVEs
The 15 most recently published vulnerabilities affecting CH22.
- CVE-2026-78141Tenda CH22 exeCommand formexeCommand command injection7.4
- CVE-2026-78063Tenda CH22 editFileName formeditFileName command injection7.4
- CVE-2026-77031Tenda CH22 formcreateFileName command injection7.4
- CVE-2026-19346Tenda CH22 CertListInfo formCertListInfo command injection8.8
- CVE-2026-15543Tenda CH22 CertListInfo formCertListInfo buffer overflow8.8
- CVE-2026-5962Tenda CH22 httpd R7WebsSecurityHandlerfunction path traversal7.3
- CVE-2026-5605Tenda CH22 WrlExtraSet formWrlExtraSet stack-based overflow8.8
- CVE-2026-5604Tenda CH22 Parameter CertLocalPrecreate formCertLocalPrecreate stack-based overflow8.8
- CVE-2026-5204Tenda CH22 Parameter webtypelibrary formWebTypeLibrary stack-based overflow8.8
- CVE-2026-5156Tenda CH22 Parameter QuickIndex formQuickIndex stack-based overflow8.8
- CVE-2026-5155Tenda CH22 Parameter AdvSetWan fromAdvSetWan stack-based overflow8.8
- CVE-2026-5154Tenda CH22 Parameter setcfm fromSetCfm stack-based overflow8.8
- CVE-2026-5153Tenda CH22 WriteFacMac FormWriteFacMac command injection6.3
- CVE-2026-5152Tenda CH22 createFileName formCreateFileName stack-based overflow8.8
- CVE-2025-15229Tenda CH22 DhcpListClient fromDhcpListClient denial of service5.3
Product grouping is registry-driven, with AI assist and human review. How it works