CVE-2026-30862 - Critical Stored XSS & Privilege Escalation in Appsmith

CVE-2026-30862 - Critical Stored XSS & Privilege Escalation in Appsmith

CVE ID :CVE-2026-30862 Published : March 9, 2026, 10:26 p.m. | 2 hours, 13 minutes ago Description :Appsmith is a platform to build admin panels, internal tools, and dashboards. Prior to 1.96, a Critical Stored XSS vulnerability exists in the Table Widget (TableWidgetV2). The root cause is a lack of HTML sanitization in the React component rendering pipeline, allowing malicious attributes to be interpolated into the DOM. By leveraging the

CVE Details

Severity
CRITICAL
Published
March 9, 2026
Impact: XSS