First published: Mon Apr 24 2023(Updated: )
Improper Neutralization of Formula Elements in a CSV File in GitHub repository alfio-event/alf.io prior to 2.0-M4-2304.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Airbrake | <2.0-m4-2304 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-2258 has been classified as a medium severity vulnerability due to its potential for improper data handling in CSV files.
To fix CVE-2023-2258, update your Alf.io installation to version 2.0-M4-2304 or later.
CVE-2023-2258 is caused by improper neutralization of formula elements in CSV files, leading to possible code execution risks.
Users of Alf.io versions prior to 2.0-M4-2304 are affected by CVE-2023-2258.
At present, there are no confirmed reports of active exploitation of CVE-2023-2258.