Total
86 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2026-69678 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 8.8 HIGH |
| Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network. | |||||
| CVE-2026-69767 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 8.8 HIGH |
| Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network. | |||||
| CVE-2026-69797 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 8.8 HIGH |
| Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code over a network. | |||||
| CVE-2026-78513 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 5.5 MEDIUM |
| Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. | |||||
| CVE-2026-72975 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2026-72977 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-09-09 | N/A | 6.5 MEDIUM |
| Out-of-bounds read in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2021-27056 | 1 Microsoft | 3 365 Apps, Office, Powerpoint | 2026-08-19 | 6.8 MEDIUM | 7.8 HIGH |
| Microsoft PowerPoint Remote Code Execution Vulnerability | |||||
| CVE-2026-68809 | 1 Microsoft | 5 365 Apps, Office 2019, Office 2021 and 2 more | 2026-08-14 | N/A | 5.5 MEDIUM |
| Incomplete cleanup in Microsoft Office PowerPoint allows an unauthorized attacker to disclose information locally. | |||||
| CVE-2024-20673 | 1 Microsoft | 8 Excel, Office, Office Long Term Servicing Channel and 5 more | 2026-08-10 | N/A | 7.8 HIGH |
| Microsoft Office Remote Code Execution Vulnerability | |||||
| CVE-2026-44812 | 1 Microsoft | 16 Excel, Powerpoint, Windows 10 1607 and 13 more | 2026-07-23 | N/A | 7.8 HIGH |
| Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-45649 | 1 Microsoft | 3 Excel, Powerpoint, Word | 2026-07-23 | N/A | 7.1 HIGH |
| Improper access control in Office for Android allows an unauthorized attacker to perform spoofing locally. | |||||
| CVE-2026-44803 | 1 Microsoft | 16 Excel, Powerpoint, Windows 10 1607 and 13 more | 2026-07-23 | N/A | 7.8 HIGH |
| Integer overflow or wraparound in Windows Win32K - GRFX allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-55123 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-07-16 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-55043 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-07-16 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-55120 | 1 Microsoft | 6 365 Apps, Microsoft 365, Office 2019 and 3 more | 2026-07-15 | N/A | 7.8 HIGH |
| Heap-based buffer overflow in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-41102 | 1 Microsoft | 1 Powerpoint | 2026-06-17 | N/A | 7.1 HIGH |
| Improper access control in Microsoft Office PowerPoint allows an authorized attacker to perform spoofing locally. | |||||
| CVE-2026-32200 | 1 Microsoft | 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more | 2026-06-17 | N/A | 7.8 HIGH |
| Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | |||||
| CVE-2026-26133 | 1 Microsoft | 10 365 Copilot, Edge, Excel and 7 more | 2026-06-17 | N/A | 7.1 HIGH |
| AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network. | |||||
| CVE-2025-59238 | 1 Microsoft | 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more | 2026-06-17 | N/A | 7.8 HIGH |
| Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | |||||
| CVE-2025-54908 | 1 Microsoft | 4 365 Apps, Office, Office Long Term Servicing Channel and 1 more | 2026-06-17 | N/A | 7.8 HIGH |
| Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | |||||
