Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Highrazvanilin

#30251de 53,633
8.7CVSS total
Vulnerabilidades · 1
PT-2026-23639
8.7
2026-03-06
Chartbrew · Chartbrew · CVE-2026-27603
**Name of the Vulnerable Software and Affected Versions** Chartbrew versions prior to 4.8.4 **Description** Chartbrew is a web application that connects to databases and APIs to create charts. Prior to version 4.8.4, the chart filter endpoint, ''/project/:project id/chart/:chart id/filter'', lacks both `verifyToken` and `checkPermissions` middleware. This allows unauthenticated users to access chart data from any team or project. The `project id` and `chart id` are vulnerable parameters. **Recommendations** Update to version 4.8.4 or later.