CVE-2026-79760
Last modified
CVE-2026-79760 is a medium-severity vulnerability rated 6.4/10 on the CVSS scale. Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.5.0 until 2.5.1, Termix allows authenticated users to configure webhook or ntfy notification channels with attacker-controlled destination URLs and trigger server-side requests through the notification-channel test endpoint.
Description
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.5.0 until 2.5.1, Termix allows authenticated users to configure webhook or ntfy notification channels with attacker-controlled destination URLs and trigger server-side requests through the notification-channel test endpoint. The request path in src/backend/database/routes/alert-rules-routes.ts reaches src/backend/utils/notification-sender.ts without destination allowlisting or private-address blocking. This permits blind requests to internal HTTP services reachable by the Termix server. Webhook mode also permits attacker-controlled HTTP methods and headers, which can cause limited state changes when an internal service accepts the fixed notification body, although response bodies are not returned. This issue is fixed in version 2.5.1.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Termix-SSH | Termix | >= 2.5.0, < 2.5.1 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-79760?
How severe is CVE-2026-79760?
How do I fix CVE-2026-79760?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-79754Nuclio is a "Serverless" framework for Real-Time Events and …7.1
- CVE-2026-79755Nuclio is a "Serverless" framework for Real-Time Events and …8
- CVE-2026-79756Nuclio is a "Serverless" framework for Real-Time Events and …8.7
- CVE-2026-79758Termix is a web-based server management platform with SSH te…5.4
- CVE-2026-79759Termix is a web-based server management platform with SSH te…4.3
- CVE-2026-7976Use after free in Views in Google Chrome prior to 148.0.7778…7.5
- CVE-2026-79761Termix is a web-based server management platform with SSH te…6.6
- CVE-2026-79762Termix is a web-based server management platform with SSH te…5.5
- CVE-2026-79763Termix is a web-based server management platform with SSH te…5.3
- CVE-2026-79764Termix is a web-based server management platform with SSH te…7.7
- CVE-2026-79766Termix is a web-based server management platform with SSH te…9.1
- CVE-2026-79767Gardener implements the automated management and operation o…5.5
Are you affected by CVE-2026-79760?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
