Vendor
Termix-SSH vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 17 vulnerabilities in Termix-SSH: 7 in the last 7 days and 7 in the last 90 days, 6 of them critical and 0 exploited in the wild. The most recent, CVE-2026-79766, was published on 24 September 2026. 1 technology has a page of its own.
- Last 7 days
- 7
- Last 90 days
- 7
- Critical, all time
- 6
- Exploited in the wild
- 0
About Termix-SSH
Srimax is a software development company specializing in communication and collaboration tools.
Termix-SSH technologies
Latest Termix-SSH vulnerabilities
- CVE-2026-79766: Termix command injection in ACME SSL settingscriticalCVSS 9.1EPSS 0.4%
- CVE-2026-79764: Termix server management platform SSRF via proxy endpointhighCVSS 7.7EPSS 0.4%
- CVE-2026-79763: Termix two-factor authentication bypass in TOTP disable endpointsmediumCVSS 5.3EPSS 0.3%
- CVE-2026-79762: Termix weak key derivation in OIDC and WebAuthn user encryptionmediumCVSS 5.5EPSS 0.1%
- CVE-2026-79761: Termix SSH key deployment command injectionmediumCVSS 6.6EPSS 0.4%
- CVE-2026-79760: Termix server-side request forgery in notification testmediumCVSS 6.4EPSS 0.3%
- CVE-2026-79759: Termix credential access control bypass in deployment endpointmediumCVSS 4.3EPSS 0.3%
- CVE-2026-45750: Termix OS command injection in File Manager resolvePathcriticalCVSS 9
- CVE-2026-45749: Termix MFA bypass via single-factor authentication in TOTP endpointshighCVSS 8.1
- CVE-2026-45748: Termix OS command injection in SSH tunnel connectioncriticalCVSS 9.8
- CVE-2026-45746: Termix broken access control in File Manager sessionId validationcriticalCVSS 9
- CVE-2026-45745: Termix Desktop improper TLS certificate validationhighCVSS 8
- CVE-2026-45744: Termix OS command injection in File Manager resolvePathcriticalCVSS 9.9
- CVE-2026-45743: Termix authorization bypass in file-manager endpointshighCVSS 8.1
- CVE-2026-42454: Termix-SSH Termix OS command injection in Docker management endpointscriticalCVSS 9.9EPSS 0.7%
- CVE-2026-42453: Termix-SSH Termix command injection in file-manager.tsinfoCVSS 8.7EPSS 1.2%
- CVE-2026-42452: Termix-SSH Termix two-factor authentication bypass in auth middlewarehighCVSS 8.1EPSS 0.3%
Most severe Termix-SSH vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-42454: Termix-SSH Termix OS command injection in Docker management endpointscriticalCVSS 9.9EPSS 0.7%
- CVE-2026-45744: Termix OS command injection in File Manager resolvePathcriticalCVSS 9.9
- CVE-2026-45748: Termix OS command injection in SSH tunnel connectioncriticalCVSS 9.8
- CVE-2026-79766: Termix command injection in ACME SSL settingscriticalCVSS 9.1EPSS 0.4%
- CVE-2026-45750: Termix OS command injection in File Manager resolvePathcriticalCVSS 9
- CVE-2026-45746: Termix broken access control in File Manager sessionId validationcriticalCVSS 9
- CVE-2026-42452: Termix-SSH Termix two-factor authentication bypass in auth middlewarehighCVSS 8.1EPSS 0.3%
- CVE-2026-45749: Termix MFA bypass via single-factor authentication in TOTP endpointshighCVSS 8.1
- CVE-2026-45743: Termix authorization bypass in file-manager endpointshighCVSS 8.1
- CVE-2026-45745: Termix Desktop improper TLS certificate validationhighCVSS 8
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 7 | 1 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/vendors/termix-ssh.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Termix-SSH vulnerabilities", https://junglewise.ai/threats/vendors/termix-ssh, 26 September 2026.