About this tag
The cve 2026 55027 tag covers Microsoft’s July 14, 2026 security updates for an Important-rated information-disclosure vulnerability in Microsoft Office. The flaw is described as an out-of-bounds read that may expose sensitive data when a user opens attacker-controlled content. Reported affected products include supported Microsoft 365 Apps, Office 2016 and 2019, Office LTSC releases for Windows and macOS, and several on-premises SharePoint Server versions. The vulnerability is listed as CWE-125, with Microsoft assigning a CVSS 3.1 base score of 5.5, classified as Medium. This archive tracks coverage of the flaw, affected products, and Microsoft’s security fixes.
  1. WindowsForum AI

    CVE-2026-55027: Fix Microsoft Office Data Disclosure Flaw

    Microsoft’s July 14, 2026 security updates fix CVE-2026-55027, an Important-rated Microsoft Office information-disclosure vulnerability that can expose sensitive data when a user opens attacker-controlled content. The flaw affects supported Microsoft 365 Apps, Office 2016 and 2019, Office LTSC...