Search Results (435 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-49700 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-08-23 7.8 High
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-49699 1 Microsoft 6 365 Apps, Office, Office Long Term Servicing Channel and 3 more 2025-08-23 7 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-49698 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-08-23 7.8 High
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-49697 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-08-23 8.4 High
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-49696 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-08-23 8.4 High
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-49695 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-08-23 8.4 High
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-49756 1 Microsoft 3 365, 365 Apps, Office 365 2025-08-23 3.3 Low
Use of a broken or risky cryptographic algorithm in Office Developer Platform allows an authorized attacker to bypass a security feature locally.
CVE-2025-49711 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-08-23 7.8 High
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-48812 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-08-23 5.5 Medium
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2025-47994 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-08-23 7.8 High
Deserialization of untrusted data in Microsoft Office allows an unauthorized attacker to elevate privileges locally.
CVE-2025-32711 1 Microsoft 1 365 Copilot 2025-08-04 9.3 Critical
Ai command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network.
CVE-2022-47213 1 Microsoft 1 365 Apps 2025-07-22 7.8 High
Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-47212 1 Microsoft 1 365 Apps 2025-07-22 7.8 High
Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-47211 1 Microsoft 1 365 Apps 2025-07-22 7.8 High
Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-26806 1 Microsoft 1 365 Apps 2025-07-22 7.8 High
Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-26805 1 Microsoft 1 365 Apps 2025-07-22 7.8 High
Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-26804 1 Microsoft 1 365 Apps 2025-07-22 7.8 High
Microsoft Office Graphics Remote Code Execution Vulnerability
CVE-2022-44695 1 Microsoft 3 365 Apps, Office, Visio 2025-07-22 7.8 High
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2022-44694 1 Microsoft 2 365 Apps, Office 2025-07-22 7.8 High
Microsoft Office Visio Remote Code Execution Vulnerability
CVE-2022-44692 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-07-22 7.8 High
Microsoft Office Graphics Remote Code Execution Vulnerability