VYPR

Termix

by Termix SSH

Source repositories

CVEs (26)

  • CVE-2026-79760MedSep 24, 2026
    risk 0.35cvss 6.4epss 0.00

    Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.5.0 until 2.5.1, Termix allows authenticated users to configure webhook or ntfy notification channels with attacker-controlled destination URLs and trigger…

  • CVE-2026-79762MedSep 24, 2026
    risk 0.29cvss 5.5epss 0.00

    Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.7.0 until 2.5.1, Termix derives the keys that wrap OIDC and WebAuthn users' Data Encryption Keys from committed default strings and the public userId salt in…

  • CVE-2026-79758MedSep 24, 2026
    risk 0.28cvss 5.4epss 0.00

    Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.8.0 until 2.5.1, authenticated Termix users can access the server-stats API without per-host authorization. GET /status returns statuses for hosts the requester…

  • CVE-2026-79763MedSep 24, 2026
    risk 0.27cvss 5.3epss 0.00

    Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.4.0 until 2.5.1, the POST /users/totp/disable and POST /users/totp/backup-codes endpoints accept the account password as the sole reauthentication factor after a…

  • CVE-2026-79759MedSep 24, 2026
    risk 0.21cvss 4.3epss 0.00

    Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.7.0 until 2.5.1, the POST /credentials/:id/deploy-to-host endpoint resolves credential and target-host records from attacker-controlled credentialId and…

  • CVE-2025-59951CriOct 1, 2025
    risk 0.00cvss 9.1epss 0.04

    Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. The official Docker image for Termix versions 1.5.0 and below, due to being configured with an Nginx reverse proxy, causes the backend to retrieve the proxy's IP…

Page 2 of 2