Skip to main content
High

CVE-2026-81959

Microsoft Excel Remote Code Execution vulnerability

Microsoft

MSRC advisory September 8, 2026

Alert details

Source feed
Microsoft MSRC
CVE ID
CVE-2026-81959
CWE
CWE-122CWE-190
Affected products
Microsoft Excel Remote Code Execution · Microsoft Microsoft Excel Remote Code Execution · Microsoft

What happened

<p>Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.</p>

What it means for your business

Microsoft Excel Remote Code Execution vulnerability (CVE-2026-81959) was added to Microsoft’s security update guidance. <p>Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.</p> If you need help checking exposure, call (864) 335-9223.

CVSS score

7.8 (High)

EPSS probability

0.43%

Sources

Related briefs

Microsoft MSRC

CVE-2026-68794

Microsoft Excel Remote Code Execution vulnerability

Microsoft Excel Remote Code Execution vulnerability (CVE-2026-68794) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-55039

Microsoft Excel Remote Code Execution vulnerability

Microsoft Excel Remote Code Execution vulnerability (CVE-2026-55039) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-55053

Microsoft Excel Remote Code Execution vulnerability

Microsoft Excel Remote Code Execution vulnerability (CVE-2026-55053) was added to Microsoft’s security update guidance. Updated an acknowledgement. This is an informational change only. If you need help checking exposure, call (864) 335-9223.

HighMicrosoft MSRC

CVE-2026-88097

Microsoft Edge (Chromium-based) Elevation of Privilege vulnerability

Microsoft Edge (Chromium-based) Elevation of Privilege vulnerability (CVE-2026-88097) was added to Microsoft’s security update guidance. <p>Use after free in Microsoft Edge (Chromium-based) allows an unauthorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.

Need help patching?

PremierePC monitors KEV alerts for managed clients and helps teams prioritize remediation before attackers do.