CVE-2024-56366 | PHPOffice PhpSpreadsheet up to 1.29.6/2.1.5/2.3.4/3.6.x Accounting.php cross site scripting (GHSA-c6fv-7vh8-2rhr)
A vulnerability classified as problematic was found in PHPOffice PhpSpreadsheet up to 1.29.6/2.1.5/2.3.4/3.6.x. This vulnerability affects unknown code of the file /vendor/PHPOffice/PhpSpreadsheet/samples/Wizards/NumberFormat/Accounting.php. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2024-56366. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.