Loading
CSV Injection (aka Excel Macro Injection or Formula Injection) exists in creating new timesheet in Kimai. By filling the Description field with malicious payload, it will be mistreated while exporting to a CSV file.
Cite this page
CVE-2021-43515. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2021-43515
Use CWE-1236, Kimai vendor hub and Kimai product page to widen CVE-2021-43515 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-19825, CVE-2023-53957 and CVE-2023-46245 for nearby disclosures in the same product family.