PT-2026-1691 · Unknown · Phpspreadsheet
Published
2026-01-07
·
Updated
2026-01-08
·
CVE-2024-45427
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
PhpSpreadsheet (affected versions not specified)
Description
A stored cross-site scripting (XSS) issue exists in PhpSpreadsheet. Exploit code has been released for this issue. The vulnerability allows for the injection of malicious scripts into web pages, potentially compromising user data and system security. The affected component is susceptible to XSS attacks, which could lead to unauthorized code execution within the context of a user's browser.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Phpspreadsheet