Unknown · Surveyking · CVE-2022-26249
**Name of the Vulnerable Software and Affected Versions**
Survey King version 0.3.0
**Description**
The issue allows attackers to execute arbitrary code or access sensitive information via a CSV injection attack because Survey King does not filter data properly when exporting excel files.
**Recommendations**
For Survey King version 0.3.0, consider implementing proper data filtering when exporting excel files to prevent CSV injection attacks. As a temporary workaround, restrict the export of sensitive information via excel files until a proper fix is applied.