Skip to content

Termix

vrelease-2.3.2-tag scope: release Security

This release includes 1 security fix for security teams reviewing exposed deployments.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →
This release patches 1 known CVE

Topics

docker file-management rdp self-hosted server-stats ssh
+5 more
ssh-tunnel telnet cli termix vnc

Affected surfaces

auth

ReleasePort's take

Moderate signal
editorial:auto 1mo

ReleasePort Layer 1 release‑2.3.2‑tag fixes multiple security vulnerabilities and adds host‑to‑host file transfer.

Why it matters: Security: several vulnerabilities are fixed; Feature: introduces host‑to‑host file transfer in the UI.

Summary

AI summary

Host‑to‑host file transfer added and several security vulnerabilities fixed.

Changes in this release

Security Critical

Several security vulnerabilities are fixed.

Several security vulnerabilities are fixed.

Source: llm_adapter@2026-06-04

Confidence: high

Security Medium

Auto‑allows SSL certificates for private network hosts.

Auto‑allows SSL certificates for private network hosts.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Feature Medium

Adds host‑to‑host file transfer in the file manager.

Adds host‑to‑host file transfer in the file manager.

Source: llm_adapter@2026-06-04

Confidence: high

Feature Medium

Adds support for single‑host direct SSH tunnels (ssh -L).

Adds support for single‑host direct SSH tunnels (ssh -L).

Source: llm_adapter@2026-06-04

Confidence: high

Feature Medium

Exposes admin_group via OIDC_ADMIN_GROUP environment variable.

Exposes admin_group via OIDC_ADMIN_GROUP environment variable.

Source: llm_adapter@2026-06-04

Confidence: high

Feature Medium

Adds native OIDC callback support.

Adds native OIDC callback support.

Source: llm_adapter@2026-06-04

Confidence: high

Feature Medium

Uses jump hosts for online status check and metric collection.

Uses jump hosts for online status check and metric collection.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Feature Low

Adds in‑line buttons on host name row for expanded hosts list.

Adds in‑line buttons on host name row for expanded hosts list.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Feature Low

Syncs appearance preferences across sessions.

Syncs appearance preferences across sessions.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Feature Low

Sends name instruction for protocol >= 1.3.0 to avoid guacd errors.

Sends name instruction for protocol >= 1.3.0 to avoid guacd errors.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Feature Low

Passes through command completion functionality.

Passes through command completion functionality.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Deprecation Low

Removes deprecated host management button from command palette.

Removes deprecated host management button from command palette.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Medium

Restores host password copy functionality.

Restores host password copy functionality.

Source: llm_adapter@2026-06-04

Confidence: high

Bugfix Medium

Shows IP and username without hovering over hosts.

Shows IP and username without hovering over hosts.

Source: llm_adapter@2026-06-04

Confidence: high

Bugfix Medium

Updates credential list UI to match host‑list UX.

Updates credential list UI to match host‑list UX.

Source: llm_adapter@2026-06-04

Confidence: high

Bugfix Medium

Restores rename‑host‑folder user interface.

Restores rename‑host‑folder user interface.

Source: llm_adapter@2026-06-04

Confidence: high

Bugfix Medium

Restores SSH keepalive interval to 30 seconds.

Restores SSH keepalive interval to 30 seconds.

Source: llm_adapter@2026-06-04

Confidence: low

Bugfix Medium

Allows navigation away from split‑view to non‑pane tabs.

Allows navigation away from split‑view to non‑pane tabs.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Medium

Resolves sudo password handling for shared host users.

Resolves sudo password handling for shared host users.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Medium

Improves terminal current working directory detection and initial command execution.

Improves terminal current working directory detection and initial command execution.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Medium

Wires up OIDC to password link dialog with submit/visibility controls.

Wires up OIDC to password link dialog with submit/visibility controls.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Medium

Resolves terminal jump hosts server‑side processing.

Resolves terminal jump hosts server‑side processing.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Low

Applies guacamole-lite protocol patch in Docker builds.

Applies guacamole-lite protocol patch in Docker builds.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Low

Shows correct icons for network interface types.

Shows correct icons for network interface types.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Low

Broadens sudo prompt detection for newer distributions.

Broadens sudo prompt detection for newer distributions.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Low

Recalculates terminal layout after web fonts load.

Recalculates terminal layout after web fonts load.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Low

Decodes base64 file content as UTF‑8 in the file manager.

Decodes base64 file content as UTF‑8 in the file manager.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Low

Normalizes lazy import default export for iOS compatibility.

Normalizes lazy import default export for iOS compatibility.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Bugfix Low

Prevents RDP display from snapping back after container resize.

Prevents RDP display from snapping back after container resize.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Refactor Low

Removes unused code and fixes PR checks and lint warnings.

Removes unused code and fixes PR checks and lint warnings.

Source: granite4.1:30b@2026-06-04-audit

Confidence: low

Full changelog

Bug fixes and new features including host-to-host file transfer, OIDC improvements, UI/UX updates, and numerous stability and security patches.

| Architecture | Windows | Linux | Mac | Android | iOS |
|------------------|------------------------------------------------------------------------------------------|-------------------------------------------------------------------------------------------|------------------------------------------------------------------------------------------|---------------------------------------------|-----------------------------------|
| x86-64 (64-bit) | EXE · MSI · Portable | AppImage · DEB · Portable | DMG | — | — |
| AArch64 (ARM64) | — | AppImage · DEB · Portable | DMG | APK (1.3.2) | IPA (1.3.2) |
| ARMv7 (32-bit) | — | AppImage · DEB · Portable | — | — | — |
| x86-32 (32-bit) | EXE · MSI · Portable | — | — | — | — |
| Universal | Chocolatey | Flatpak | DMG · App Store · Homebrew | — | — |

Update Log:

  • Added in-line buttons on host name row when using click to expand hosts in hosts list
  • Expose admin_group via OIDC_ADMIN_GROUP env var
  • Sync appearance preferences
  • Support native OIDC callbacks
  • Add portal Desktop DBUS permission for Flatpak URL opening
  • Restore host password copy
  • Support for single-host direct tunnels (ssh -L)
  • Host to host file transfer in file manager
  • Show ip/username without having to hover over hosts
  • Updated credential list UI to match UI/UX of host list
  • Restore rename host folder UI

Bug Fixes:

  • Several security vulnerabilities
  • Allow navigating away from split-view to non-pane tabs
  • Restore SSH keepalive internal to use 30s to prevent random disconnects
  • Apply guacamole-lite protocol patch in Docker builds
  • Show correct icons for network interface types
  • Resolve sudo password for shared host users
  • Use jump hosts for online status check and metric collection
  • Broaden sudo prompt detection for newer distros
  • Recalculate terminal layout after web fonts load
  • Improve terminal cwd detection and initial directory command
  • Decode base64 file content as UTF-8 in file manager
  • Normalize lazy import default export for iOS compatibility
  • Prevent RDP display from snapping back after container resize
  • Removed unused code and fixed PR checks and lint warnings
  • Send name instruction for protocol >= 1.3.0 (guacd 1.5.0/1.1.0 errors)
  • Wire up OIDC to password link dialog with submit/visibility
  • Pass through command completion
  • Resolve terminal jump hosts server-side
  • Auto allow SSL certs for private network hosts
  • Removed deprecated host management button from command palette
  • Command palette opening wrong protocol
  • Export/import failing for ssh key hosts
  • Docker ssh2 native crypto not compiling in Docker
  • Persisted terminal tabs attempt SSH on RDP hosts afater migration
  • Credentials not appearing in host manager until refresh

Security Fixes

  • Several security vulnerabilities patched (specific CVEs not listed)

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Termix

Get notified when new releases ship.

Sign up free

About Termix

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities.

All releases →

Related context

Beta — feedback welcome: [email protected]