The security vulnerability can be exploited with a malicious CSV file.
Source: Threadpost