cyberchef vulnerabilities
CVEs whose affected-version data names the cyberchef package (npm). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-57439Medium· 5.0CyberChef: Prototype pollution in Series Chart operation
CyberChef: Prototype pollution in Series Chart operation
▾ Sunlitcyberchef · cyberchefEPSS 0.24%via GHSA
CVE-2026-72912Medium· 4.3CyberChef is a web app for encryption, encoding, compression, and data analysis
CyberChef is a web app for encryption, encoding, compression, and data analysis. Prior to 11.3.0, CyberChef's pretty-recipe parser in src/core/Utils.mjs can exhaust client-side CPU when a malformed #recipe= URL fragment containing a larg…
▾ Sunlitgchq · CyberChefEPSS 0.18%via NVD