Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Strangej

#25285of 53,624
9.8Total CVSS
Vulnerabilities · 1
PT-2022-17741
9.8
2022-03-24
Unknown · Surveyking · CVE-2022-26249
**Name of the Vulnerable Software and Affected Versions** Survey King version 0.3.0 **Description** The issue allows attackers to execute arbitrary code or access sensitive information via a CSV injection attack because Survey King does not filter data properly when exporting excel files. **Recommendations** For Survey King version 0.3.0, consider implementing proper data filtering when exporting excel files to prevent CSV injection attacks. As a temporary workaround, restrict the export of sensitive information via excel files until a proper fix is applied.