CVE-2026-96795 | Horilla up to 1.x Export Data views.py HorillaListView.export_data columns code injection (EUVD-2026-87370)

SecurityVulns

A vulnerability labeled as very critical has been found in Horilla up to 1.x. This vulnerability affects the function HorillaListView.export_data of the file horilla_views/generic/cbv/views.py of the component Export Data. The manipulation of the argument columns results in code injection.

This vulnerability is known as CVE-2026-96795. It is possible to launch the attack remotely. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More