Vulnerabilities > CVE-2022-28481 - Improper Neutralization of Formula Elements in a CSV File vulnerability in Csv-Safe Project Csv-Safe
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
CSV-Safe gem < 3.0.0 doesn't filter out special characters which could trigger CSV Injection.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |