This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
OffSequence
offseq.bsky.social
did:plc:t5t6qep2vfipbi7f54demwev
🚨 CRITICAL: Rukovoditel CRM 3.6.4 has pre-auth XSS in Zadarma API ('zd_echo'). Attackers can execute JS in users' browsers. Restrict access & monitor now! https://radar.offseq.com/threat/cve-2026-31845-cwe-79-improper-neutralization-of-i-5f1f2c55 #OffSeq #XSS #Rukovoditel
2026-04-11T19:00:14.492Z