# CyberChef v11.1.0 - Product: CyberChef (https://whatsnew.fyi/product/cyberchef) - Vendor: gchq - Date: 2026-06-13 - Version: v11.1.0 - Original notes: https://github.com/gchq/CyberChef/releases/tag/v11.1.0 - Permalink: https://whatsnew.fyi/product/cyberchef/releases/v11.1.0 What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. --- - **security** — Add fix and tests for Lorem Ipsum DoS issue - **fixed** — Fix spurious error messages generated during webpack build - **added** — Implement ROR13 feature - **added** — Add Escape Smart Characters operation - **added** — Get AES IV from input - **fixed** — Validate text encoding options - **added** — Add remove ANSI escape codes operation - **fixed** — Fix option ingredients being overwritten - **fixed** — Fix pgp tests - **fixed** — Fix flaky npm run testui - **changed** — Include git ref in website download zip name - **fixed** — Series Chart HTML Formatting fix - **fixed** — Parse Ethernet Frame HTML formatting fix - **fixed** — Parse IPv4 Header HTML formatting fix - **changed** — Build docker container for arm v7 as well - **added** — Add new Wrap operation to format text at specified line width - **fixed** — Fix all zeros after 16384 bytes with Blake3 This release includes a security fix ([#2557]) - Security: Add fix, and tests, for Lorem Ipsum DoS issue [@GCHQDeveloper581] | [#2557] - chore (deps): bump the patch-updates group with 4 updates | [#2552] - chore (deps): bump the actions-dependencies group with 2 updates | [#2551] - chore (deps): bump the docker-dependencies group with 2 updates | [#2550] - chore (deps): bump protobufjs from 8.5.0 to 8.6.2 in the minor-updates group | [#2553] - Security Policy Update [@C85297] | [#2547] - Fix spurious error messages generated during webpack build [@GCHQDeveloper581] | [#2545] - chore (deps): bump shell-quote from 1.8.3 to 1.8.4 | [#2543] - Implementing ROR13 feature [@Fufu-btw] | [#2539] - New operation improvements [@jl5193] [@GCHQDeveloper581] | [#1431] - Npm and yarn/major version updates [@GCHQDeveloper581] | [#2527] - Update README to reflect AES Decrypt changes [@andreasrtv] | [#2502] - feat: add Escape Smart Characters operation [@HarelKatz] | [#2391] - feat: Get AES IV from input (QoL) [@andreasrtv] | [#2471] - fix: validate text encoding options [@SyedIshmumAhnaf] | [#2497] - chore (deps): bump the minor-updates group with 5 updates [@GCHQDeveloper581] | [#2500] - chore (deps): bump the patch-updates group with 2 updates | [#2499] - chore (deps): bump nginxinc/nginx-unprivileged from `df0e9ed` to `0a1e718` in the docker-dependencies group | [#2498] - Add remove ANSI escape codes operation [@Louis-Ladd] [@GCHQDeveloper581] | [#2143] - Fix option ingredients being overwriten [@C85297] | [#2341] - chore (deps): bump qs and express | [#2478] - chore (deps): bump tmp from 0.2.5 to 0.2.7 | [#2479] - chore (deps): bump the patch-updates group across 1 directory with 6 updates | [#2463] - chore (deps): bump the docker-dependencies group across 1 directory with 2 updates | [#2468] - chore (deps): bump terser from 5.46.2 to 5.48.0 | [#2385] - Make dependabot quieter [@GCHQDeveloper581] | [#2467] - update sitemap [@Blank0120] | [#2443] - Bump webpack-dev-server to 5.2.4 [@GCHQDeveloper581] | [#2417] - Fix pgp tests [@GCHQDeveloper581] [@C85297] | [#2461] - chore (deps): bump the patch-updates group across 1 directory with 4 updates | [#2438] - chore (deps): bump docker/setup-buildx-action from 4.0.0 to 4.1.0 | [#2439] - chore (deps): bump docker/login-action from 4.1.0 to 4.2.0 | [#2441] - chore (deps): bump docker/metadata-action from 6.0.0 to 6.1.0 | [#2442] - update bson [@Blank0120] [@GCHQDeveloper581] | [#2425] - chore (deps): bump webpack from 5.106.2 to 5.107.1 | [#2428] - chore (deps): bump protobufjs from 7.5.8 to 7.6.0 | [#2429] - chore (deps): bump sql-formatter from 15.7.4 to 15.8.0 | [#2430] - chore (deps): bump docker/build-push-action from 7.1.0 to 7.2.0 | [#2431] - Fix flaky `npm run testui` [@lzandman] | [#2412] - Include git ref in website download zip name [@C85297] | [#2339] - Bump nginxinc/nginx-unprivileged from `808f784` to `b9f7ba1` | [#2389] - Series Chart HTML Formatting fix [@C85297] | [#2403] - Parse Ethernet Frame HTML formatting fix [@C85297] | [#2402] - Parse IPv4 Header HTML formatting fix [@C85297] | [#2401] - Update chromedriver, and install corresponding chrome in workflows (fixes build) [@GCHQDeveloper581] | [#2387] - chore (deps): bump @codemirror/view from 6.41.1 to 6.43.0 | [#2384] - chore (deps): bump globals from 17.5.0 to 17.6.0 | [#2386] - chore (deps): bump the patch-updates group across 1 directory with 3 updates | [#2388] - [StepSecurity] Apply security best practices [@GCHQDeveloper581] StepSecurity Bot | [#2378] - Build docker container for arm v7 as well [@GCHQDeveloper581] | [#2379] - chore (deps): bump fast-uri from 3.1.0 to 3.1.2 | [#2372] - update bcryptjs [@C85297] [@GCHQDeveloper581] | [#2368] - chore (deps): bump picomatch from 2.3.1 to 2.3.2 | [#2370] - chore (deps): bump ip-address from 10.1.0 to 10.2.0 | [#2371] - chore (deps): bump axios from 1.15.0 to 1.16.0 | [#2369] - feat(operation-wrap): add new Wrap operation to fo _[Truncated at 4000 characters — full notes: https://github.com/gchq/CyberChef/releases/tag/v11.1.0]_