Description An issue was discovered in Joomla! before 3.9.7. The CSV export of com_actionslogs is vulnerable to CSV injection. Remediation References CVE-2019-12765 Related Vulnerabilities WordPress Plugin Search & Replace SQL Injection (3.2.1) WordPress Plugin Ultimate FAQ Security Bypass (1.8.24) WebLogic CVE-2018-2625 Vulnerability (CVE-2018-2625) WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-10086) WordPress Plugin Sell Downloads Cross-Site Scripting (1.0.86) Severity Critical Classification CVE-2019-12765 CWE-1236 CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Tags Missing Update Known Vulnerabilities