CVE-2025-67851
A flaw was found in moodle. This formula injection vulnerability occurs when data fields are exported without proper escaping. A remote attacker could exploit this by providing malicious data that, when exported and opened in a spreadsheet, allows arbitrary formulas to execute. This can lead to compromised data integrity and unintended operations within the spreadsheet.
Vendor
Product
CWE
Yayın Tarihi
2026-02-03 11:15:55
Güncelleme
2026-02-11 18:32:18
Source Identifier
patrick@puiterwijk.org
KEV Date Added
-