Home
MEDIUM: 5.5 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C 16.0.1 (custom) before https://aka.ms/OfficeSecurityReleases
affected
16.0.0.0 (custom) before 16.0.5539.1002
affected
19.0.0 (custom) before https://aka.ms/OfficeSecurityReleases
affected
16.0.1 (custom) before https://aka.ms/OfficeSecurityReleases
affected
16.0.0 (custom) before https://aka.ms/OfficeSecurityReleases
affected
16.0.1 (custom) before 16.106.26020821
affected
16.0.0 (custom) before 16.106.26020821
affected
16.0.0.0 (custom) before 16.0.10417.20097
affected
Description
Improper input validation in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
Problem types
CWE-20: Improper Input Validation
Product status
References
msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21258 (Microsoft Excel Information Disclosure Vulnerability)