Remote Code Execution Vulnerability in Microsoft Office Publisher
CVE-2026-81385
8.8HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 8 September 2026
What is CVE-2026-81385?
A vulnerability in Microsoft Office Publisher allows an unauthorized attacker to execute malicious code through deserialization of untrusted data. Exploiting this flaw can enable attackers to remotely control affected systems, posing significant risks to data integrity and security. Users are encouraged to apply available patches and follow best practices to mitigate potential exploitation.
Affected Version(s)
Microsoft 365 Apps for Enterprise 32-bit Systems 16.0.1 < 16.0.20326.20138
Microsoft Office 2019 32-bit Systems 19.0.0 < 16.0.10417.20207
Microsoft Office LTSC 2021 32-bit Systems 16.0.1 < 16.0.14334.20906