Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Office Long Term Servicing Channel
Total 249 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-60727 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-11-17 N/A 7.8 HIGH
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-60728 1 Microsoft 2 365 Apps, Office Long Term Servicing Channel 2025-11-17 N/A 4.3 MEDIUM
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information over a network.
CVE-2025-62199 1 Microsoft 4 365 Apps, Excel, Office and 1 more 2025-11-17 N/A 7.8 HIGH
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-62200 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-11-17 N/A 7.8 HIGH
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-62201 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-11-17 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-62202 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-11-17 N/A 7.1 HIGH
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2025-62203 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-11-17 N/A 7.8 HIGH
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-62205 1 Microsoft 2 365 Apps, Office Long Term Servicing Channel 2025-11-17 N/A 7.8 HIGH
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-62216 1 Microsoft 2 365 Apps, Office Long Term Servicing Channel 2025-11-17 N/A 7.8 HIGH
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-60726 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-11-17 N/A 7.1 HIGH
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2025-60724 1 Microsoft 16 Office, Office Long Term Servicing Channel, Windows 10 1607 and 13 more 2025-11-17 N/A 9.8 CRITICAL
Heap-based buffer overflow in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
CVE-2025-59240 1 Microsoft 4 365 Apps, Excel, Office and 1 more 2025-11-17 N/A 5.5 MEDIUM
Exposure of sensitive information to an unauthorized actor in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
CVE-2021-42292 1 Microsoft 4 365 Apps, Excel, Office and 1 more 2025-10-30 6.8 MEDIUM 7.8 HIGH
Microsoft Excel Security Feature Bypass Vulnerability
CVE-2025-59229 1 Microsoft 2 365 Apps, Office Long Term Servicing Channel 2025-10-28 N/A 5.5 MEDIUM
Uncaught exception in Microsoft Office allows an unauthorized attacker to deny service locally.
CVE-2025-59231 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-10-28 N/A 7.8 HIGH
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-59233 1 Microsoft 5 365 Apps, Excel, Office and 2 more 2025-10-28 N/A 7.8 HIGH
Access of resource using incompatible type ('type confusion') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2025-59234 1 Microsoft 3 365 Apps, Office, Office Long Term Servicing Channel 2025-10-28 N/A 7.8 HIGH
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2025-59236 1 Microsoft 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more 2025-10-28 N/A 8.4 HIGH
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2024-38226 1 Microsoft 3 Office 2019, Office Long Term Servicing Channel, Publisher 2025-10-28 N/A 7.3 HIGH
Microsoft Publisher Security Feature Bypass Vulnerability
CVE-2024-21413 1 Microsoft 4 365 Apps, Office 2016, Office 2019 and 1 more 2025-10-28 N/A 9.8 CRITICAL
Microsoft Outlook Remote Code Execution Vulnerability