← Back

CVE-2026-55138

nvd nist
Published: Jul 14, 2026Modified: Jul 15, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: secure@microsoft.com (Secondary)

Description

Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

Affected (14)

7 products
365 Apps
Excel
Microsoft 365
Office 2019
Office 2021
Office 2024
Office Online Server
Configuration A
14 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
Microsoft
Version 2016
Version 2016
All versions
Microsoft
All versions
All versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions
All versions
Before 16.0.10417.20175

References (1)

Timeline

No history available yet.