Office 365
This hub aggregates every CVE we track for Office 365. Use it to gauge the current risk picture and drill into individual advisories.
other
6
CVEs tracked
1
Critical
2
High
0
In CISA KEV
Severity distribution
MEDIUM3HIGH2CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
1
0
0
2024-102026-09
Latest CVEs
The 6 most recently published vulnerabilities affecting Office 365.
- CVE-2026-55054Microsoft Excel Information Disclosure Vulnerability6.5
- CVE-2019-1446An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka 'Microsoft Excel Information Disclosure Vulnerability'.5.5
- CVE-2019-1402An information disclosure vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Information Disclosure Vulnerability'.5.5
- CVE-2019-1109A spoofing vulnerability exists when Microsoft Office Javascript does not check the validity of the web page making a request to Office documents.An attacker who successfully exploited this vulnera...9.1
- CVE-2019-0945A remote code execution vulnerability exists when the Microsoft Office Access Connectivity Engine improperly handles objects in memory, aka 'Microsoft Office Access Connectivity Engine Remote Code ...7.8
- CVE-2018-8597A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle objects in memory, aka "Microsoft Excel Remote Code Execution Vulnerability." Thi...7.8
Product normalization is registry-driven with AI assist and human review. How it works