A vulnerability was found in gooaclok819 sublinkX up to 1.8. It has been declared as problematic. This vulnerability affects unknown code of the file middlewares/jwt.go. The manipulation with the input sublink leads to use of hard-coded cryptographic key
.

This vulnerability was named CVE-2025-6669. The attack can be initiated remotely. Furthermore, there is an exploit available.

It is recommended to upgrade the affected component.