Total
1031 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-40361 | 1 Microsoft | 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more | 2026-06-03 | N/A | 8.4 HIGH |
| Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-40421 | 1 Microsoft | 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more | 2026-06-01 | N/A | 4.3 MEDIUM |
| Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | |||||
| CVE-2026-40420 | 1 Microsoft | 3 365 Apps, Office, Office Long Term Servicing Channel | 2026-06-01 | N/A | 8.8 HIGH |
| Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-40418 | 1 Microsoft | 3 365 Apps, Office, Office Long Term Servicing Channel | 2026-06-01 | N/A | 7.8 HIGH |
| Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2026-40367 | 1 Microsoft | 5 365 Apps, Office, Office Long Term Servicing Channel and 2 more | 2026-06-01 | N/A | 8.4 HIGH |
| Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-40366 | 1 Microsoft | 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more | 2026-06-01 | N/A | 8.4 HIGH |
| Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-40362 | 1 Microsoft | 5 365 Apps, Excel, Office and 2 more | 2026-06-01 | N/A | 7.8 HIGH |
| Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-40358 | 1 Microsoft | 3 365 Apps, Office, Office Long Term Servicing Channel | 2026-06-01 | N/A | 8.4 HIGH |
| Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-35436 | 1 Microsoft | 3 365 Apps, Office, Office Long Term Servicing Channel | 2026-06-01 | N/A | 8.8 HIGH |
| Use after free in Microsoft Office allows an authorized attacker to elevate privileges locally. | |||||
| CVE-2025-30388 | 1 Microsoft | 18 365 Copilot, Office, Office Long Term Servicing Channel and 15 more | 2026-05-22 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally. | |||||
| CVE-2025-47164 | 1 Microsoft | 4 365 Apps, 365 Copilot, Office and 1 more | 2026-05-22 | N/A | 8.4 HIGH |
| Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2025-30386 | 1 Microsoft | 4 365 Apps, 365 Copilot, Office and 1 more | 2026-05-22 | N/A | 8.4 HIGH |
| Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2025-59227 | 1 Microsoft | 4 365 Apps, 365 Copilot, Office and 1 more | 2026-05-22 | N/A | 7.8 HIGH |
| Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2025-47953 | 1 Microsoft | 4 365 Apps, 365 Copilot, Office and 1 more | 2026-05-22 | N/A | 8.4 HIGH |
| Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2024-38250 | 1 Microsoft | 17 365 Copilot, Office, Office Long Term Servicing Channel and 14 more | 2026-05-22 | N/A | 7.8 HIGH |
| Windows Graphics Component Elevation of Privilege Vulnerability | |||||
| CVE-2025-26687 | 1 Microsoft | 17 365 Copilot, Office, Windows 10 1507 and 14 more | 2026-05-22 | N/A | 7.5 HIGH |
| Use after free in Windows Win32K - GRFX allows an unauthorized attacker to elevate privileges over a network. | |||||
| CVE-2025-49696 | 1 Microsoft | 4 365 Apps, 365 Copilot, Office and 1 more | 2026-05-22 | N/A | 8.4 HIGH |
| Out-of-bounds read in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2025-49695 | 1 Microsoft | 4 365 Apps, 365 Copilot, Office and 1 more | 2026-05-22 | N/A | 8.4 HIGH |
| Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-26110 | 1 Microsoft | 4 365 Apps, 365 Copilot, Office and 1 more | 2026-05-22 | N/A | 8.4 HIGH |
| Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
| CVE-2025-53732 | 1 Microsoft | 2 365 Copilot, Office | 2026-05-22 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | |||||
