
FUXA Server is vulnerable to unauthenticated RCE (GHSA-32cc-x95p-fxcg, CVE-2024-34537) via a hardcoded JWT secret in default configurations. Update to 1.2.10+ or change the secret. #fuxaserver #RCE #infosec https://www.pulsepatch.io/posts/fuxa-server-unauthenticated-remote-code-execution-hardcoded-jwt-secret
Post summary
FUXA Server has an unauthenticated remote‑code‑execution vulnerability due to a hardcoded JWT secret; update to 1.2.10+ or change the secret to remediate.
