Skip to main content

CVE-2026-56191

Microsoft Exchange Online Tampering vulnerability

Microsoft

MSRC advisory July 23, 2026

Alert details

Source feed
Microsoft MSRC
CVE ID
CVE-2026-56191
Affected products
Microsoft Exchange Online Tampering · Microsoft Microsoft Exchange Online Tampering · Microsoft

What happened

Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network.

What it means for your business

Microsoft Exchange Online Tampering vulnerability (CVE-2026-56191) was added to Microsoft’s security update guidance. Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network. If you need help checking exposure, call (864) 335-9223.

Sources

Related briefs

HighMicrosoft MSRC

CVE-2026-70125

Microsoft Outlook Remote Code Execution vulnerability

Microsoft Outlook Remote Code Execution vulnerability (CVE-2026-70125) was added to Microsoft’s security update guidance. Information published. This CVE was addressed by updates that were released in September 2026, but the CVE was inadvertently omitted from the September 2026 Security Updates. This is an informational change only. Customers who have already installed the September 2026 updates… If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-57091

Windows File History Service Elevation of Privilege vulnerability

Windows File History Service Elevation of Privilege vulnerability (CVE-2026-57091) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-55134

Microsoft Word Remote Code Execution vulnerability

Microsoft Word Remote Code Execution vulnerability (CVE-2026-55134) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-63532

Microsoft Office Remote Code Execution vulnerability

Microsoft Office Remote Code Execution vulnerability (CVE-2026-63532) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Need help patching?

PremierePC monitors KEV alerts for managed clients and helps teams prioritize remediation before attackers do.