Media Technology · Pizzy Library · CVE-2026-5242
**Name of the Vulnerable Software and Affected Versions**
Pizzy Library versions 1.0.0.26250 through 1.3.9.26250
**Description**
Improper neutralization of formula elements in a CSV file in MIA Technology Inc. Pizzy Library allows Code Injection, which occurs when an application fails to properly sanitize user-supplied input before including it in a CSV file, potentially allowing the execution of arbitrary code via spreadsheet formulas.
**Recommendations**
Update Pizzy Library to version 1.3.9.26250 or later.