📦 Chartbrew

by Depomo

🔍 What is Chartbrew?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-25887

HIGH CVSS 7.2 Mar 6, 2026

Chartbrew versions before 4.8.1 contain a remote code execution vulnerability in MongoDB dataset queries. Attackers can execute arbitrary code on the server by crafting malicious queries. This affects...

CVE-2026-27605

MEDIUM CVSS 6.3 Mar 6, 2026

Chartbrew versions before 4.8.4 have a stored cross-site scripting (XSS) vulnerability in file upload functionality. Attackers can upload malicious HTML files containing JavaScript, which when served ...

CVE-2026-25877

MEDIUM CVSS 6.5 Mar 6, 2026

Chartbrew versions before 4.8.1 have an authorization bypass vulnerability where authenticated users can manipulate charts belonging to other projects. The application only checks project-level permis...