Heap-Based Buffer Overflow in Microsoft Excel
CVE-2026-26108
7.8HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 10 March 2026
What is CVE-2026-26108?
A vulnerability exists in Microsoft Office Excel that allows attackers to exploit a heap-based buffer overflow. This can lead to unauthorized local code execution, exposing systems to a variety of security risks. Users should ensure their applications are updated to mitigate the potential impact of this vulnerability.
Affected Version(s)
Microsoft 365 Apps for Enterprise 32-bit Systems 16.0.1
Microsoft Excel 2016 32-bit Systems 16.0.0.0 < 16.0.5543.1000
Microsoft Office 2019 32-bit Systems 19.0.0