Package impact
npm / fuxa-server
| CVE | Severity | CVSS | Risk | Published | Description | Impact |
|---|---|---|---|---|---|---|
| CVE-2026-47717 | high | — | 8.0 | 22h ago | FUXA's Unauthenticated Project Data Disclosure Exposes Server-Side Scripts and Device Configurations | |
| CVE-2026-43947 | high | — | 8.0 | 2d ago | FUXA Vulnerable to Unauthenticated Remote Code Execution via Script Test Mode Authorization Bypass | |
| CVE-2026-43946 | high | — | 8.0 | 2d ago | FUXA has an unauthenticated arbitrary tag value disclosure via /api/getTagValue | |
| CVE-2025-69971 | high | — | 8.0 | 4mo ago | FUXA has a hardcoded fallback JWT signing secret |