Multiple CVEs Discovered in Microsoft Products
Article Content
- •CVE-2026-55053 and CVE-2026-68812 allow local code execution in Microsoft Excel.
- •CVE-2026-69486 enables remote code execution in Microsoft Edge.
- •User interaction is required to exploit these vulnerabilities.
On September 15, 2026, Microsoft disclosed several vulnerabilities affecting its products, including CVE-2026-55053 and CVE-2026-68812, both related to heap-based buffer overflows in Microsoft Office Excel. These vulnerabilities allow unauthorized attackers to execute code locally, requiring user interaction to exploit. Additionally, CVE-2026-69486, a remote code execution vulnerability in Microsoft Edge (Chromium-based), was also published, enabling attackers to execute code over a network. The attack vector for Excel vulnerabilities is local, while Edge's vulnerability allows for network exploitation. Users are advised to be cautious when opening files from untrusted sources. All vulnerabilities were last updated on September 15, 2026, and patches are expected to be released shortly.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Following this threat?
Track CVE-2026-69486 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Zero-Day Vulnerability in Cisco Secure Email Gateway Exploited On September 14, 2026, Cisco disclosed a critical SQL injection vulnerability (CVE-2026-76461) in its Secure Email Gateway, allowing unauthenticated remote attackers to execute arbitrary commands with root privileges. This vulnerability arises from insufficient validation in the email parsing logic. Cisco confirmed…
Critical GitLab CVE-2026-85706 Exploited; Microsoft Issues Record 974 Patches A critical CVE-2026-85706 path-traversal vulnerability in GitLab (CVSS 10.0) was exploited in the wild just hours after its disclosure on September 12, 2026. Microsoft released its largest-ever patch batch, addressing 974 vulnerabilities, including several actively exploited Windows flaws. The GitLab flaw allows…