Type Confusion Vulnerability in Microsoft Office Excel
CVE-2026-55025
7.8HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 14 July 2026
What is CVE-2026-55025?
A vulnerability in Microsoft Office Excel allows an attacker to exploit type confusion, enabling unauthorized code execution on affected systems. By manipulating resource types, an unauthorized user could potentially execute malicious code locally, posing a severe risk to data integrity and system security. Users are advised to apply security patches and remain vigilant for any indicators of compromise.
Affected Version(s)
Microsoft 365 Apps for Enterprise 32-bit Systems 16.0.1
Microsoft Excel 2016 32-bit Systems 16.0.0.0 < 16.0.5561.1001
Microsoft Office 2019 32-bit Systems 19.0.0