Description

GCHQ CyberChef before 11.0.0 allows XSS via Show Base64 offsets, as demonstrated by the /#recipe=Show_Base64_offsets('%3Cscript substring.

INFO

Published Date :

2026-04-29T02:55:53.171Z

Last Modified :

2026-04-29T13:14:40.068Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2026-42615 vulnerability.

Vendors Products
Gchq
  • Cyberchef

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact