Skip to content

Microsoft 365 Apps RCE Vulnerability Exploited Using a Malicious Excel File

Cybersecuritynews •Abinaya • June 29, 2026

Microsoft has disclosed a critical remote code execution vulnerability in its Office ecosystem that can be exploited through a malicious Excel file. The vulnerability, tracked as CVE-2025-60727, affects multiple versions of Microsoft Office and underscores the continued risk posed by document-based attack techniques commonly used in phishing campaigns. The issue is classified as an out-of-bounds […]