CVE-2026-65875

Summary

BaserCMS provided by baserCMS Users Community contains a CSV file injection vulnerability. If a user downloads and opens a CSV file containing malicious code injected by an attacker, the malicious code may be executed.

Affected Software

VendorProductVersion RangeStatus
baserCMS Users CommunityBaserCMS0 < 5.3.0affected

Weaknesses

  • CWE-1236: Improper neutralization of formula elements in a CSV file

References