Beveiligingsadvies

CVE-2026-3665

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-03-07 15:32:08
Laatst bijgewerkt 2026-03-11 16:29:12
Toegewezen door VulDB
CVSS-score 4.8
Status PUBLISHED

Beschrijving

A vulnerability was identified in xlnt-community xlnt up to 1.6.1. The affected element is the function xlnt::detail::xlsx_consumer::read_office_document of the file source/detail/serialization/xlsx_consumer.cpp of the component XLSX File Parser. The manipulation leads to null pointer dereference. The attack must be carried out locally. The exploit is publicly available and might be used.