Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Termix — Vulnerabilities & Security Advisories 26

All 26 CVE vulnerabilities found in Termix, with AI-generated Chinese analysis, references, and POCs.

This page aggregates verified security vulnerabilities for Termix, specifically categorized by the software vendor and the underlying weakness types associated with its components. It compiles a comprehensive timeline of reported flaws, covering disclosures from the product's initial release through the most recent quarterly updates. Visitors can use this resource to track the vendor's advisory history, analyze the prevalence of specific vulnerability classes such as remote code execution or privilege escalation, and review the complete security history for Termix deployments. By centralizing these records, the page facilitates the identification of recurring weakness patterns and helps security teams assess the long-term risk profile of the software. The data is organized to highlight the evolution of the product's security posture over time, allowing for a clear comparison between early design flaws and modern patching strategies. This aggregated view supports threat modeling and incident response planning by providing a structured overview of past compromises without requiring separate lookups across disparate databases. The collection remains current, reflecting the latest confirmed reports to ensure that the vulnerability landscape of Termix is accurately represented for both research and operational security purposes.

Vendor: LukeGus

CVE ID Title CVSS Severity Published
CVE-2026-79763 Termix: MFA-critical operations accept the account password as a sole factor (regression of CVE-2026-45749) CWE-308 5.3 Medium 2026-09-24
CVE-2026-79764 Termix: Authenticated SSRF via `/homepage/proxy` — No Destination Allowlist CWE-918 7.7 High 2026-09-24
CVE-2026-79762 Termix: Hardcoded default key encrypts all OIDC/WebAuthn users' stored SSH credentials — full offline decryption from a database copy CWE-321 5.5 Medium 2026-09-24
CVE-2026-79766 Termix: OS command injection in ACME/Let's Encrypt certificate-request handler via admin-controlled domain/email CWE-78 9.1 Critical 2026-09-24
CVE-2026-79759 Termix: Cross-User Information Disclosure via Missing Ownership Check in deploy-to-host Endpoint CWE-639 4.3 Medium 2026-09-24
CVE-2026-79761 Termix: Command injection in SSH key deployment verification CWE-78 6.6 Medium 2026-09-24
CVE-2026-79758 Termix: Authenticated users can read other users' host status and clear global SSH connections CWE-284 5.4 Medium 2026-09-24
CVE-2026-79760 Termix: Authenticated blind SSRF through notification channel test endpoints CWE-918 6.4 Medium 2026-09-24
CVE-2026-53545 Termix: Remote Code Execution via Tunnel Disconnect pkill Command Injection CWE-78 9.8 Critical 2026-08-19
CVE-2026-53546 Termix: Missing authorization in SSH host credential resolution exposes stored credentials CWE-639 9.6 Critical 2026-08-19
CVE-2026-53542 Termix: Tar option injection in file-manager archive creation allows command execution on managed SSH hosts CWE-78 8.8 High 2026-08-19
CVE-2026-53548 Termix: IDOR — Authenticated user can fetch SSH passwords for hosts owned by other users CWE-285 9.6 Critical 2026-08-19
CVE-2026-53547 Termix: Account Takeover via Global Settings Disclosure CWE-862 8.8 High 2026-08-19
CVE-2026-53549 Termix: Server-Side Request Forgery via Proxy Connectivity Test CWE-918 7.7 High 2026-08-19
CVE-2026-45750 Termix Vulnerable to Arbitrary Command Execution in File Manager CWE-78 9.0 Critical 2026-06-05
CVE-2026-45749 Termix's TOTP two-factor authentication can be disabled or bypassed using only the account password CWE-308 8.1 High 2026-06-05
CVE-2026-45748 Termix Vulnerable to Remote Code Execution via SSH Tunnel Forward Command Injection CWE-78 9.8 Critical 2026-06-05
CVE-2026-45746 Termix Vulnerable to Arbitrary Command Execution via Session Hijacking CWE-284 9.0 Critical 2026-06-05
CVE-2026-45744 Termix has an OS Command Injection in File Manager resolvePath endpoint CWE-78 9.9 Critical 2026-06-05
CVE-2026-45743 Termix has a File-Manager Session Hijack via Missing Ownership Check (IDOR) CWE-639 8.1 High 2026-06-05
CVE-2026-45745 Termix has improper certificate validation in Electron desktop client that enables MITM credential/token theft CWE-295 8.0 High 2026-06-05
CVE-2026-42454 Termix: OS Command Injection in Docker Container Management Endpoints CWE-78 9.9 Critical 2026-05-08
CVE-2026-42453 Termix: Command injection in extractArchive/compressFiles via double-quote escaping bypass CWE-77 9.8AI Critical AI 2026-05-08
CVE-2026-42452 Termix: Pending-TOTP temporary token can regenerate backup codes and neutralize TOTP CWE-304 8.1 High 2026-05-08
CVE-2026-22804 Termix has a Stored XSS in File Manager leading to Local File Inclusion (LFI) in Electron and Session Hijacking in Browser CWE-269 8.0 High 2026-01-12
CVE-2025-59951 Termix' official Docker image contains an authentication bypass vulnerability CWE-348 9.1AI Critical AI 2025-10-01

All 26 known CVE vulnerabilities affecting Termix with full Chinese analysis, references, and POCs where available.