Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 28 May 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 28 May 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | CSV Injection Vulnerability in json-2-csv Package via PreventCsvInjection Option |
Thu, 28 May 2026 06:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Versions of the package json-2-csv from 3.15.0 and before 5.5.11 are vulnerable to CSV Injection via the preventCsvInjection option which can be bypassed. An attacker can inject formulas into CSV files, which execute when the files are opened in spreadsheet applications. | |
| Weaknesses | CWE-1236 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2026-05-28T13:10:59.627Z
Reserved: 2026-05-27T05:35:32.761Z
Link: CVE-2026-9673
Updated: 2026-05-28T13:10:40.695Z
Status : Received
Published: 2026-05-28T06:16:29.147
Modified: 2026-05-28T14:16:26.880
Link: CVE-2026-9673
No data.
OpenCVE Enrichment
Updated: 2026-05-28T07:30:11Z