CVE-2026-55139: Microsoft Office Information Disclosure Vulnerability
Microsoft Office Information Disclosure Vulnerability
Other sources
Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally.
— Microsoft
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2026-55139?
The severity of CVE-2026-55139 is rated as medium with a score of 5.5.
How do I fix CVE-2026-55139?
To fix CVE-2026-55139, apply the available patches provided by Microsoft for affected Office software.
What type of vulnerability is CVE-2026-55139?
CVE-2026-55139 is classified as an information disclosure vulnerability due to an out-of-bounds read in Microsoft Office.
Which versions of Microsoft Office are affected by CVE-2026-55139?
CVE-2026-55139 affects Microsoft Office 2016, Microsoft 365 Apps for Enterprise, Microsoft 365 Apps, Microsoft Office 2019, Microsoft Office 2021, Microsoft Office 2024, and Microsoft Office 365 for Mac.
What is the potential impact of CVE-2026-55139?
The potential impact of CVE-2026-55139 is that an unauthorized attacker could disclose sensitive information locally.