CNNVD-202506-3251 Information

CNNVD ID

CNNVD-202506-3251

CVE-2025-6669

  • CNNVD Published: 2025-06-25

Description (Chinese)

sublinkX是Chen Hui个人开发者的一个开源节点订阅转换生成管理系统。 sublinkX 1.8及之前版本存在安全漏洞,该漏洞源于文件middlewares/jwt.go中使用硬编码密钥。

Description (English)

SublinkX is an open-source subscription-generation management system for Chen Hui personal developers. SublinkX 1.8 and previous versions contain a security loophole that stems from the use of hard-coded keys in the document Middlewares/jwt.go.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

Live Support

Published

2025-06-25

Last Modified

2026-02-24

References

https://github.com/gooaclok819/sublinkX/issues/68#issuecomment-2957290524 https://github.com/gooaclok819/sublinkX/releases/tag/1.9 https://github.com/gooaclok819/sublinkX/issues/69 https://vuldb.com/?submit.602369 https://vuldb.com/?ctiid.313882 https://github.com/gooaclok819/sublinkX/commit/778d26aef723daa58df98c8060c43f5bf5d1b10b https://vuldb.com/?id.313882 https://nvd.nist.gov/vuln/detail/CVE-2025-6669

Patch

https://github.com/gooaclok819/sublinkX/releases

Share on: