CVE-2026-22623: Hiksemi Hs-Afs-s1h1
High severity, CVSS 7.2. EPSS: 0.5% chance of exploitation in the next 30 days.
Due to insufficient input parameter validation on the interface, authenticated users of certain HIKSEMI NAS products can execute arbitrary commands on the device by crafting specific messages.
Affected products
- Hiksemi Hs-Afs-s1h1: version V5.10.10_Build_251126 only
Published 2026-01-30. Last modified 2026-06-17.