Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-24447

Опубликовано: 04 фев. 2026
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

If a malformed data is input to the affected product, a CSV file downloaded from the affected product may contain such malformed data. When a victim user download and open such a CSV file, the embedded code may be executed in the user's environment. Note that Movable Type 7 series and 8.4 series, which are End-of-Life (EOL), are affected by the vulnerability as well.

EPSS

Процентиль: 1%
0.00012
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1236

Связанные уязвимости

CVSS3: 6.5
debian
3 дня назад

If a malformed data is input to the affected product, a CSV file downl ...

CVSS3: 6.5
github
3 дня назад

If a malformed data is input to the affected product, a CSV file downloaded from the affected product may contain such malformed data. When a victim user download and open such a CSV file, the embedded code may be executed in the user's environment. Note that Movable Type 7 series and 8.4 series, which are End-of-Life (EOL), are affected by the vulnerability as well.

EPSS

Процентиль: 1%
0.00012
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-1236