CVE-2026: Vulnerabilities in Microsoft Office Word and Excel

CVE-2026: Vulnerabilities in Microsoft Office Word and Excel

First seen 12 Feb 2026, 21:16 UTC Api.Msrc.Microsoft 12.3

Article Content

Browse articles
ThreatCluster

Microsoft Office applications are affected by two vulnerabilities identified as CVE-2026. The first allows unauthorized attackers to bypass security features in Microsoft Word through untrusted inputs, while the second enables information disclosure in Microsoft Excel due to an out-of-bounds read. Both vulnerabilities pose risks to users operating these applications locally.

Timeline

2026-02-10
CVE-2026 vulnerabilities reported for Word and Excel