PhpSpreadsheet allows bypassing of XSS sanitizer using the javascript protocol and special characters
Moderate severity
GitHub Reviewed
Published
Feb 1, 2025
in
PHPOffice/PhpSpreadsheet
•
Updated Feb 4, 2025
Give feedback on Dependabot alerts