This is a heavily interactive web application, and JavaScript is required. Simple HTML interfaces are possible, but that is not what this is.
Post
STACKFLAG
stackflag.bsky.social
did:plc:zhe53h7ajlloep2oso5pqxzj
CVE-2026-55089
Versions of Etherpad from 2.1.0 through 3.0.x accept a login token that only checks whether an admin flag is present, even when the flag is set to false. This lets a regular user run commands that normally…
Too many irrelevant or confusing CVEs? Use stackflag.com
#CVE #infosec
2026-08-20T12:40:02.965Z