A remote command execution (RCE) vulnerability in the /api/runscript endpoint of FUXA 1.1.13 allows attackers to execute arbitrary commands via a crafted POST request.
https://thehackernews.com/2026/08/attackers-exploit-mlflow-ssrf-flaw-to.html
https://github.com/btar1gan/exploit_CVE-2023-33831
https://github.com/codeb0ss/CVE-2023-33831-PoC
https://github.com/rodolfomarianocy/Unauthenticated-RCE-FUXA-CVE-2023-33831