MantisBT: master-2.25 99eb8d41

Author Committer Branch Timestamp Parent
dregad dregad master-2.25 2021-10-29 13:23 master-2.25 7f4534c7
Affected Issues  0029130: CVE-2021-43257: CSV Injection with CSV Export Feature
Changeset

New config $g_csv_injection_protection

Lets the user decide whether they want to prefix formulas to avoid CSV
injection or not.

Fixes 0029130

mod - config_defaults_inc.php Diff File
mod - core/csv_api.php Diff File
mod - docbook/Admin_Guide/en-US/config/misc.xml Diff File