In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade @frangoteam/fuxa to version 1.3.0 or higher.
@frangoteam/fuxa is a Web-based Process Visualization (SCADA/HMI/Dashboard) software
Affected versions of this package are vulnerable to Use of Hard-coded Cryptographic Key in the authentication process when a static fallback JWT signing secret is used if no custom secret is configured. An attacker can gain unauthorized access by forging valid JWT tokens using the known default secret.