---
id: CVE-2026-101052
title: A security vulnerability has been detected in refly-ai refly up to 1.1.0
summary: >-
  A security vulnerability has been detected in refly-ai refly up to 1.1.0. This
  issue affects some unknown processing of the file
  apps/api/src/modules/config/app.config.ts of the component JWT Token Handler.
  The manipulation with the inpu…
severity: high
cvss: 7.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-259
  - CWE-798
vendor: refly-ai
product: refly
affected:
  - refly 1.0
  - refly 1.1.0
published: '2026-09-28'
updated: '2026-09-28'
sourceUpdated: '2026-09-28T13:17:19.383'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-101052'
references:
  - url: 'https://github.com/DReazer/CV3/blob/main/refly/Hard-coded.md'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/cve/CVE-2026-101052'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/submit/927328'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/410910'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/vuln/410910/cti'
    label: cna@vuldb.com
tags:
  - nvd
  - cve.org
  - exploit-available
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'yes'
  technicalImpact: partial
  timestamp: '2026-09-28T11:26:13.118604Z'
ingestedAt: '2026-09-28T13:09:42.223Z'
---

## Overview

A security vulnerability has been detected in refly-ai refly up to 1.1.0. This issue affects some unknown processing of the file apps/api/src/modules/config/app.config.ts of the component JWT Token Handler. The manipulation with the input test leads to hard-coded credentials. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
