QiAnXin Excelize是中国QiAnXin公司开源的一款Go语言编写的Excel文件读写库。 QiAnXin Excelize 2.11.0之前版本存在异常处理不当漏洞,该漏洞源于解析共享字符串单元格值时仅检查上限,允许包含-1的XLSX文件触发panic。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-54063 | 7.5 HIGH | Excelize: Unbounded Row Index Allocation in Worksheet Parser (checkSheet OOM/Panic DoS) |
| CVE-2026-59161 | Excelize: Streaming GetRows row-bound bypass causes attacker-controlled allocation |
No comments yet