Vulnerabilities (CVE)

Total 359722 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-45649 1 Microsoft 3 Excel, Powerpoint, Word 2026-06-19 N/A 7.1 HIGH
Improper access control in Office for Android allows an unauthorized attacker to perform spoofing locally.
CVE-2026-45645 1 Microsoft 6 365 Apps, Microsoft 365, Office 2016 and 3 more 2026-06-19 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45643 1 Microsoft 4 365 Apps, Microsoft 365, Office 2021 and 1 more 2026-06-19 N/A 7.8 HIGH
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-45486 1 Microsoft 4 365 Apps, Microsoft 365, Office 2021 and 1 more 2026-06-19 N/A 7.8 HIGH
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-45485 1 Microsoft 7 365 Apps, Microsoft 365, Office 2016 and 4 more 2026-06-19 N/A 3.3 LOW
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-45482 2026-06-19 N/A 8.4 HIGH
Initialization of a resource with an insecure default in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to disclose information over a network.
CVE-2026-45480 2026-06-19 N/A 10.0 CRITICAL
Improper authentication in Azure Active Directory allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-45475 1 Microsoft 7 365 Apps, Microsoft 365, Office 2016 and 4 more 2026-06-19 N/A 7.8 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45474 1 Microsoft 7 365 Apps, 365 Copilot, Microsoft 365 and 4 more 2026-06-19 N/A 8.4 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45472 1 Microsoft 7 365 Apps, 365 Copilot, Microsoft 365 and 4 more 2026-06-19 N/A 8.4 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45471 1 Microsoft 7 365 Apps, Microsoft 365, Office 2019 and 4 more 2026-06-19 N/A 7.8 HIGH
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-45469 1 Microsoft 7 365 Apps, Excel, Microsoft 365 and 4 more 2026-06-19 N/A 7.8 HIGH
Integer underflow (wrap or wraparound) in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
CVE-2026-45466 1 Microsoft 4 365 Apps, Microsoft 365, Office 2021 and 1 more 2026-06-19 N/A 3.3 LOW
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-45463 1 Microsoft 7 365 Apps, 365 Copilot, Microsoft 365 and 4 more 2026-06-19 N/A 8.4 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45461 1 Microsoft 7 365 Apps, 365 Copilot, Microsoft 365 and 4 more 2026-06-19 N/A 8.4 HIGH
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45460 1 Microsoft 6 365 Apps, 365 Copilot, Microsoft 365 and 3 more 2026-06-19 N/A 4.7 MEDIUM
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
CVE-2026-45459 1 Microsoft 4 365 Apps, Microsoft 365, Office 2021 and 1 more 2026-06-19 N/A 3.3 LOW
Protection mechanism failure in Microsoft Office Excel allows an unauthorized attacker to bypass a security feature locally.
CVE-2026-45458 1 Microsoft 7 365 Apps, Microsoft 365, Office 2019 and 4 more 2026-06-19 N/A 8.4 HIGH
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
CVE-2026-45457 1 Microsoft 4 365 Apps, Microsoft 365, Office 2021 and 1 more 2026-06-19 N/A 7.8 HIGH
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-45456 1 Microsoft 7 365 Apps, Microsoft 365, Office 2016 and 4 more 2026-06-19 N/A 8.4 HIGH
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.