Chartbrew

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 15
    Known Exploited: 0
    2
    Critical Level Threats
    9
    High Level Threats
    4
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-41518

    Chartbrew has a stored DOM XSS via Chart Tooltip innerHTML (ChartDatasetConfig.legend)

    Last Modified: Jun 05, 2026
    Published: Jun 04, 2026

    CVE-2026-40603

    Chartbrew: Incorrect Access Control in /api/project/dashboard/:brewName via same-team override

    Last Modified: Apr 30, 2026
    Published: Apr 30, 2026

    CVE-2026-40601

    Chartbrew: Missing Authorization in /api/chart/:chart_id/query via team-level refresh toggle

    Last Modified: May 04, 2026
    Published: Apr 30, 2026

    CVE-2026-40600

    Chartbrew: Incorrect Access Control in project share policy routes via unbound policy_id

    Last Modified: Apr 30, 2026
    Published: Apr 30, 2026

    CVE-2026-40595

    Chartbrew: Incorrect Access Control in public chart and export routes via missing onReport and SharePolicy checks

    Last Modified: Apr 30, 2026
    Published: Apr 30, 2026
    Items Per Page
    Chartbrew Vulnerabilities & Security CVEs | CVE-DB