← Back

Spreadsheet\

spreadsheet\

Vendor: Tozt • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tozt
1Spreadsheet\
Jun 2, 2025
Jan 18, 2024
N/A· v4
6.5 MEDIUM· v3
N/A· v2
The Spreadsheet::ParseXLSX package before 0.30 for Perl allows XXE attacks because it neglects to use the no_xxe option of XML::Twig.
1Tozt
1Spreadsheet\
Nov 4, 2025
Jan 9, 2024
N/A· v4
5.5 MEDIUM· v3
N/A· v2
The Spreadsheet::ParseXLSX package before 0.28 for Perl can encounter an out-of-memory condition during parsing of a crafted XLSX document. This occurs because the memoize implementation does not have appropriate constra...Show more
The Spreadsheet::ParseXLSX package before 0.28 for Perl can encounter an out-of-memory condition during parsing of a crafted XLSX document. This occurs because the memoize implementation does not have appropriate constraints on merged cells.Show less