A CSV Formula Injection vulnerability in TrueConf Server v5.5.2.10813 allows a normal user to inject malicious spreadsheet formulas into exported chat logs via crafted Display Name.
History

Tue, 30 Dec 2025 18:45:00 +0000

Type Values Removed Values Added
Description A CSV Formula Injection vulnerability in TrueConf Server v5.5.2.10813 allows a normal user to inject malicious spreadsheet formulas into exported chat logs via crafted Display Name.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-12-30T18:34:56.946Z

Reserved: 2025-12-08T00:00:00.000Z

Link: CVE-2025-66834

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2025-12-30T19:15:44.720

Modified: 2025-12-30T19:15:44.720

Link: CVE-2025-66834

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.