{"api_version":"v1","generated_at":"2026-10-09T09:05:00+00:00","product":{"cve_count":2,"evidence_gap_note":"Official registry publication history is linked, but a publisher support or retirement boundary has not been established.","id":"security:cve-gchq-cyberchef-177c29da5b54","lifecycle_state":"evidence_gap","linked_lifecycle_url":"https://lifecycle.blacktree.nl/libraries/npm/cyberchef","name":"CyberChef","next_cursor":null,"observations":[{"affected":"< 11.3.0","affected_versions_present":true,"cve_id":"CVE-2026-72912","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-72912","fixed":"11.3.0.","last_modified":"2026-08-12T22:14:24.757Z","patch_url":"https://github.com/gchq/CyberChef/security/advisories/GHSA-w74r-jxjh-gwr6","primary_source":"","published":"2026-08-10T21:02:16.375Z"},{"affected":"< 11.2.0","affected_versions_present":true,"cve_id":"CVE-2026-57439","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-57439","fixed":"11.2.0.","last_modified":"2026-07-08T16:12:28.118Z","patch_url":"https://github.com/gchq/CyberChef/security/advisories/GHSA-fx6f-382r-j72c","primary_source":"","published":"2026-07-08T14:58:38.693Z"},{"affected":"< 11.0.0","affected_versions_present":true,"cve_id":"CVE-2026-42615","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-42615","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-29T13:14:40.068Z","patch_url":"","primary_source":"","published":"2026-04-29T02:55:53.171Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"gchq"}}
