CVE-2026-69442 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.
CVE-2026-69285 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.
CVE-2026-78526 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-81952 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-78518 — CVSS 8.8 (high): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code over a network.
CVE-2026-78524 — CVSS 8.8 (high): Out-of-bounds write in Microsoft Office allows an unauthorized attacker to execute code over a network.
CVE-2026-69778 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a network.
CVE-2026-78505 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code over a network.
CVE-2026-69764 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-69529 — CVSS 8.8 (high): Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code over a network.
CVE-2026-78512 — CVSS 8.8 (high): Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
CVE-2026-45456 — CVSS 8.4 (high): Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45463 — CVSS 8.4 (high): Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-55022 — CVSS 7.8 (high): Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-81957 — CVSS 7.8 (high): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-81956 — CVSS 7.8 (high): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-81954 — CVSS 7.8 (high): Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-81953 — CVSS 7.8 (high): Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-50301 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-81951 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-50665 — CVSS 7.8 (high): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-81398 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-62804 — CVSS 7.8 (high): External control of file name or path in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-63513 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-63515 — CVSS 7.8 (high): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-81397 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-81396 — CVSS 7.8 (high): Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-63526 — CVSS 7.8 (high): Stack-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-63532 — CVSS 7.8 (high): Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-63533 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-81388 — CVSS 7.8 (high): Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-64903 — CVSS 7.8 (high): Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-64909 — CVSS 7.8 (high): Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-81386 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-65661 — CVSS 7.8 (high): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-56193 — CVSS 7.1 (high): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-81389 — CVSS 7.0 (high): Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-80087 — CVSS 6.5 (medium): Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to disclose information over a network.
CVE-2026-80089 — CVSS 6.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.
CVE-2026-80091 — CVSS 6.5 (medium): Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information over a network.
CVE-2026-64918 — CVSS 6.5 (medium): Insufficiently protected credentials in Microsoft Office allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-78515 — CVSS 6.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.
CVE-2026-69734 — CVSS 6.5 (medium): Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.
CVE-2026-69626 — CVSS 6.5 (medium): Buffer over-read in Microsoft Office allows an unauthorized attacker to disclose information over a network.
CVE-2026-80088 — CVSS 6.5 (medium): Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network.
CVE-2026-69739 — CVSS 6.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information over a network.
CVE-2026-80084 — CVSS 6.5 (medium): Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to disclose information over a network.
CVE-2026-72974 — CVSS 6.5 (medium): Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.
CVE-2026-55026 — CVSS 6.2 (medium): Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-63524 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-63517 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-56195 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-81399 — CVSS 5.5 (medium): Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-81400 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-81401 — CVSS 5.5 (medium): Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to disclose…
CVE-2026-56192 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55139 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55121 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55057 — CVSS 5.5 (medium): Integer overflow or wraparound in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55042 — CVSS 5.5 (medium): Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55035 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55028 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55027 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55023 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-81958 — CVSS 5.5 (medium): Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-44821 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-85875 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-70317 — CVSS 5.5 (medium): Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-68797 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-81387 — CVSS 5.5 (medium): Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an unauthorized attacker to…
CVE-2026-64899 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-63529 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-81390 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-81391 — CVSS 5.5 (medium): Use of uninitialized resource in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-81392 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-81393 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-81394 — CVSS 5.5 (medium): Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows an unauthorized attacker to…
CVE-2026-81395 — CVSS 5.5 (medium): Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2026-45485 — CVSS 3.3 (low): Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.