The .js also looks at the captcha, just to make sure that something, anything was written in before the page is allowed to be submitted. The second is where the captcha input is actually validated ...
Two vulnerabilities in n8n’s sandbox mechanism could be exploited for remote code execution (RCE) on the host system.
Results that may be inaccessible to you are currently showing.
Hide inaccessible results