Vulnerabilities > Joget > Worfklow > High

DATE CVE VULNERABILITY TITLE RISK
2019-07-28 CVE-2019-14352 Improper Neutralization of Formula Elements in a CSV File vulnerability in Joget Worfklow 6.0.20
In Joget Workflow 6.0.20, CSV Injection, also known as Formula Injection, exists, as demonstrated by jw/web/userview/crm_community/crm_userview_sales/_/account_new with the Account ID or Account Name field.
local
low complexity
joget CWE-1236
7.8