Search Results (136 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2026-55049 1 Microsoft 8 365 Apps, Office 2016, Office 2019 and 5 more 2026-07-15 7.8 High
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-55022 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-15 7.8 High
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-50467 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-15 7.8 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-50314 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-15 7.8 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-47290 1 Microsoft 5 365 Apps, Office 2016, Office 2019 and 2 more 2026-07-15 7.8 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-55023 1 Microsoft 12 365 Apps, Microsoft 365, Office 2016 and 9 more 2026-07-14 5.5 Medium
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55018 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-14 7.8 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-55017 1 Microsoft 5 365 Apps, Office 2016, Office 2019 and 2 more 2026-07-14 7.8 High
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-50301 1 Microsoft 5 365 Apps, Office 2016, Office 2019 and 2 more 2026-07-14 7.8 High
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-56195 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-14 5.5 Medium
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55139 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-14 5.5 Medium
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-55042 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-14 5.5 Medium
Use of uninitialized resource in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-56193 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-14 7.1 High
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-45463 1 Microsoft 11 365 Apps, 365 Copilot, Microsoft 365 and 8 more 2026-07-08 8.4 High
Integer underflow (wrap or wraparound) in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45645 1 Microsoft 9 365 Apps, Microsoft 365, Office 2016 and 6 more 2026-07-08 7.8 High
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45461 1 Microsoft 11 365 Apps, 365 Copilot, Microsoft 365 and 8 more 2026-07-08 8.4 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45474 1 Microsoft 12 365 Apps, 365 Copilot, Microsoft 365 and 9 more 2026-07-08 8.4 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45472 1 Microsoft 13 365 Apps, 365 Copilot, Microsoft 365 and 10 more 2026-07-08 8.4 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45475 1 Microsoft 15 365 Apps, Microsoft 365, Microsoft 365 Apps For Enterprise and 12 more 2026-06-24 7.8 High
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45456 1 Microsoft 13 365 Apps, Microsoft 365, Office 2016 and 10 more 2026-06-11 8.4 High
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.