Critical severity9.8NVD Advisory· Published Mar 26, 2025· Updated Jun 17, 2026
CVE-2024-55964
CVE-2024-55964
Description
An issue was discovered in Appsmith before 1.52. An incorrectly configured PostgreSQL instance in the Appsmith image leads to remote command execution inside the Appsmith Docker container. The attacker must be able to access Appsmith, login to it, create a datasource, create a query against that datasource, and execute that query.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:appsmith:appsmith:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:appsmith:appsmith:*:*:*:*:*:*:*:*range: <1.52
- (no CPE)
- (no CPE)range: <1.52
Patches
Vulnerability mechanics
References
1- github.com/appsmithorg/appsmith/security/advisories/GHSA-m95x-4w54-gc83nvdVendor Advisory
News mentions
0No linked articles in our index yet.