CVE-2026-26109: Microsoft Excel Remote Code Execution Vulnerability
Microsoft Excel Remote Code Execution Vulnerability
Other sources
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-26109?
CVE-2026-26109 has a critical severity level due to its potential for remote code execution.
How do I fix CVE-2026-26109?
To fix CVE-2026-26109, you should apply the latest security patch provided by Microsoft for the affected version of Excel.
Which versions of Microsoft Excel are affected by CVE-2026-26109?
CVE-2026-26109 affects multiple versions, including Excel 2016, Office LTSC 2024, Office LTSC 2021, and Office 2019.
What is the impact of exploiting CVE-2026-26109?
Exploitation of CVE-2026-26109 could allow an unauthorized attacker to execute arbitrary code on the vulnerable system.
Is there a workaround for CVE-2026-26109?
Currently, the best approach to mitigate CVE-2026-26109 is to apply the available patches from Microsoft as there are no known effective workarounds.