Description
CyberChef before 8.31.2 allows XSS in core/operations/TextEncodingBruteForce.mjs.
Remediation
References
https://github.com/gchq/CyberChef/commit/01f0625d6a177f9c5df9281f12a27c814c2d8bcf
https://github.com/gchq/CyberChef/compare/v8.31.1...v8.31.2
https://github.com/gchq/CyberChef/issues/539
https://github.com/gchq/CyberChef/issues/544
Related Vulnerabilities
CVE-2020-4038 Vulnerability in npm package graphql-playground-html
CVE-2022-39381 Vulnerability in npm package muhammara
CVE-2020-28477 Vulnerability in npm package immer
CVE-2023-40343 Vulnerability in maven package io.jenkins.plugins:tuleap-oauth
CVE-2023-50730 Vulnerability in maven package org.typelevel:grackle-core_sjs1_3