CVE-2026-107218
MediumAdvisory
Published 7 Oct 2026In the index since 8 Oct 2026
- Severity
- Medium
- worst across findings
- CVSS
- 5.3
- base score, highest
- EPSS
- —
- probability of exploitation
- CISA KEV
- Not listed
- no confirmed exploitation
- Charts affected
- 4
- of 18,053 indexed, latest versions
- Container images
- 4
- deployed by those charts
- Fix available
- 1 of 1
- affected package
Excelize: RIGHT() on supplementary-plane text slices with a negative index and panics
Carried by container images the latest versions of 4 of 18,053 indexed charts deploy, on 4 images.
| Affected package | Affected versions | Fixed in | Images |
|---|---|---|---|
| github.com/ | v2.11.0 | 2.11.1-0.20260908032718-ecd99d761fe0 | 4 |
- OSV records
- GHSA-8jjq-8j9w-m2v6
Charts affected
4 by stars
Container images carrying it
4 by charts deploying them
A fixed version is listed for 1 of the 1 affected package.
| Container image | Digest | Package | Fixed in | Used by |
|---|---|---|---|---|
| b3log/ | d740a1d3ed6b | github.com/ | 2.11.1-0.20260908032718-ecd99d761fe0 | 1 |
| bytebase/ | 0b3a44dfac3e | github.com/ | 2.11.1-0.20260908032718-ecd99d761fe0 | 1 |
| evcc/ | 070c8a8912c5 | github.com/ | 2.11.1-0.20260908032718-ecd99d761fe0 | 1 |
| mdenda/ | 9e559aa83030 | github.com/ | 2.11.1-0.20260908032718-ecd99d761fe0 | 1 |