CVE-2026-79764
Last modified
CVE-2026-79764 is a high-severity vulnerability rated 7.7/10 on the CVSS scale. Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.5.0 until 2.5.1, the /homepage/proxy endpoint accepts an authenticated user's url query parameter and passes it to http.get or https.get without destination restrictions.
Description
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 2.5.0 until 2.5.1, the /homepage/proxy endpoint accepts an authenticated user's url query parameter and passes it to http.get or https.get without destination restrictions. In src/backend/database/routes/homepage-proxy-routes.ts, new URL performs only syntactic validation, allowing requests to loopback, RFC1918, link-local, and cloud metadata destinations. The endpoint returns the complete fetched JSON response, so a low-privilege or self-registered account can exfiltrate internal service data and cloud credentials. This issue is fixed in version 2.5.1.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Termix-SSH | Termix | >= 2.5.0, < 2.5.1 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-79764?
How severe is CVE-2026-79764?
How do I fix CVE-2026-79764?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-79759Termix is a web-based server management platform with SSH te…4.3
- CVE-2026-7976Use after free in Views in Google Chrome prior to 148.0.7778…7.5
- CVE-2026-79760Termix is a web-based server management platform with SSH te…6.4
- CVE-2026-79761Termix is a web-based server management platform with SSH te…6.6
- CVE-2026-79762Termix is a web-based server management platform with SSH te…5.5
- CVE-2026-79763Termix is a web-based server management platform with SSH te…5.3
- CVE-2026-79766Termix is a web-based server management platform with SSH te…9.1
- CVE-2026-79767Gardener implements the automated management and operation o…5.5
- CVE-2026-79769Nokogiri versions before 1.19.4 contain a possible invalid (…5.5
- CVE-2026-7977Inappropriate implementation in Canvas in Google Chrome prio…6.3
- CVE-2026-79770Nokogiri versions before 1.19.3 contain regular expression d…7.5
- CVE-2026-79771Nokogiri versions before 1.19.3 contain a memory leak in the…5.3
Are you affected by CVE-2026-79764?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
