CVE-2022-28481
Published
CVSS v3
9.8
CRITICAL
CVSS v2
7.5
HIGH
Affected
1
PROJECT
Description
CSV-Safe gem < 3.0.0 doesn't filter out special characters which could trigger CSV Injection.
Decorate the ruby CSV library to sanitize output CSV against CSV injection attacks.