This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
OffSequence
offseq.bsky.social
did:plc:t5t6qep2vfipbi7f54demwev
Critical SQLi (CVE-2026-4317) in Umami 3.0.2 — authenticated users can exploit the 'timezone' param to run SQL commands. Mitigate now: sanitize inputs, avoid raw queries, watch for abnormal DB activity. https://radar.offseq.com/threat/cve-2026-4317-cwe-89-improper-neutralization-of-sp-e769b7b4 #O...
2026-03-31T10:30:30.867Z