chartbrew vulnerabilities
CVEs whose affected-version data names the chartbrew package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
4 CVEsRSS
CVE-2026-61851Medium· 6.5Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts
Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts. Prior to 5.2.2, Chartbrew's runQuery() implementation in server/modules/ai/orchestrator/tools/runQuery.js atte…
CVE-2026-61743Medium· 6.3PoCChartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts
Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts. Prior to 5.2.2, Chartbrew's server/modules/safeRequest.js calls validateOutboundUrl() to resolve and validate …
CVE-2026-65980High· 7.9Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts
Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts. Prior to 5.2.3, Chartbrew's ClickHouse protocol in server/sources/plugins/clickhouse/clickhouse.protocol.js ca…
CVE-2026-61852Medium· 5.8Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts
Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts. Prior to 5.2.2, Chartbrew's runQuery() implementation in server/modules/ai/orchestrator/tools/runQuery.js inte…