HIGH7.5npm
GHSA-45c3-c4c3-8rqg· CVE-2023-31716FUXA vulnerable to Local File Inclusion
Modified: 9/25/2024
package
pkg:npm/%40frangoteam/fuxa
FUXA vulnerable to Local File Inclusion
Modified: 9/25/2024
FUXA has JWT Authentication Bypass via HTTP Referer header spoofing
Modified: 2/26/2026
Server-Side Request Forgery in FUXA
Modified: 11/8/2023
FUXA has a hardcoded fallback JWT signing secret
Modified: 5/11/2026
FUXA Vulnerable to Pre-auth RCE via Path Manipulation & Configuration Injection
Modified: 9/10/2026
A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA
Modified: 11/8/2023