This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
OffSequence
offseq.bsky.social
did:plc:t5t6qep2vfipbi7f54demwev
Appsmith <2.1 has a CRITICAL vuln (CVE-2026-55454): low-priv users can exploit internal Caddy admin API via SSRF to control the reverse proxy. Upgrade to 2.1+ immediately. https://radar.offseq.com/threat/cve-2026-55454-cwe-749-exposed-dangerous-method-or-64dab1aa9059ef90 #OffSeq #appsmith #security
2026-06-25T00:00:39.168Z