← Back to CVE List
CVE-2020-22390
Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrary code into the name parameter and perform code execution when the crafted file is opened.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt