1. CyberChef XSS Vulnerability: Unescaped Input in OffsetChecker.mjs Exposes Users to Script Injection
A critical cross-site scripting (XSS) vulnerability has been reported in the latest version of GCHQ's CyberChef, a widely used web-based cybersecurity tool. The flaw, located in the `OffsetChecker.mjs` module, allows an attacker to inject and execute arbitrary JavaScript code by supplying a malicious payload to the `sa...