CVE-2026-32188

CWE-125Out-of-bounds Read3 documents3 sources
Severity
7.1HIGH
EPSS
No EPSS data
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 14

Description

Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2

Affected Packages8 packages

CVEListV5microsoft/microsoft_excel_201616.0.0.016.0.5548.1000
CVEListV5microsoft/office_online_server16.0.0.016.0.10417.20113
CVEListV5microsoft/microsoft_office_201919.0.0https://aka.ms/OfficeSecurityReleases
CVEListV5microsoft/microsoft_office_ltsc_202116.0.1https://aka.ms/OfficeSecurityReleases
CVEListV5microsoft/microsoft_office_ltsc_202416.0.0https://aka.ms/OfficeSecurityReleases

🔴Vulnerability Details

2
VulDB
Microsoft Office 2019/LTSC/LTSC 2021/LTSC 2024 Excel out-of-bounds2026-04-14
CVEList
Microsoft Excel Information Disclosure Vulnerability2026-04-14
CVE-2026-32188 (HIGH CVSS 7.1) | Out-of-bounds read in Microsoft Off | cvebase.io