pkg:Packagist/phpoffice/phpexcel
共 23 筆 CVEHIGH11MEDIUM10
✅ 檢查你的版本
所有已知漏洞
- from 0, <= 1.8.2
- from 0, <= 1.8.2
- from 0, < 1.8.2
- HIGH7.7CVE-2024-45290PhpSpreadsheet allows absolute path traversal and Server-Side Request Forgery when opening XLSX filefrom 0, <= 1.8.2
- from 0, <= 1.8.2
- from 0, <= 1.8.2
- from 0, <= 1.8.2
- from 0, <= 1.8.2
- from 0, <= 1.8.2
- HIGH7.1CVE-2024-56365PhpSpreadsheet allows unauthorized Reflected XSS in the constructor of the Downloader classfrom 0, <= 1.8.2
- from 0, <= 1.8.2
- from 0, <= 1.8.2
- MEDIUM6.3CVE-2024-45291PhpSpreadsheet allows absolute path traversal and Server-Side Request Forgery in HTML writer when embedding images is enabledfrom 0, <= 1.8.2
- MEDIUM6.1CVE-2025-22131Cross-Site Scripting (XSS) vulnerability in generateNavigation() function in PhpSpreadsheetfrom 0, <= 1.8.2
- MEDIUM6.1CVE-2024-45060PhpSpreadsheet has an Unauthenticated Cross-Site-Scripting (XSS) in sample filefrom 0, <= 1.8.2
- MEDIUM5.4CVE-2025-23210PhpSpreadsheet allows bypassing of XSS sanitizer using the javascript protocol and special charactersfrom 0, <= 1.8.2
- MEDIUM5.4CVE-2024-56412PhpSpreadsheet allows bypass XSS sanitizer using the javascript protocol and special charactersfrom 0, <= 1.8.2
- MEDIUM5.4CVE-2024-56411PhpSpreadsheet has a Cross-Site Scripting (XSS) vulnerability of the hyperlink base in the HTML page headerfrom 0, <= 1.8.2
- MEDIUM5.4CVE-2024-56410PhpSpreadsheet has a Cross-Site Scripting (XSS) vulnerability in custom propertiesfrom 0, <= 1.8.2
- MEDIUM5.4CVE-2024-45292PhpSpreadsheet HTML writer is vulnerable to Cross-Site Scripting via JavaScript hyperlinksfrom 0, <= 1.8.2
- MEDIUM5.4CVE-2024-45046PhpSpreadsheet HTML writer is vulnerable to Cross-Site Scripting via style informationfrom 0, <= 1.8.2
- from 0, < 1.8.1
- from 0, < 1.8.0