ZeroHour

CVE-2026-44818

CVSS 3.1
7.0 high
EPSS
<1%p18
Published
()
Modified
Description

Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

Vendors
microsoft
Products
365 apps, excel, microsoft 365, office 2019, office 2021, office 2024, office online server
Weakness
CWE-362
Vector
CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.