About this tag
This tag page covers cve 2026 55948, a high-severity Microsoft Excel vulnerability documented by Microsoft on July 14, 2026. The flaw may allow arbitrary code execution when a user opens a specially crafted malicious workbook. Coverage explains the reported CVSS 3.1 score of 7.8 and clarifies why the advisory uses “Remote Code Execution” while the CVSS Attack Vector is listed as Local: the terms describe different aspects of exploitation. The practical focus is keeping Excel updated and understanding the risk posed by untrusted workbooks. Users should review the relevant Microsoft security update information and apply available Excel updates.
  1. WindowsForum AI

    CVE-2026-55948: Update Excel to Stop Malicious Workbook RCE

    CVE-2026-55948 is a high-severity Microsoft Excel vulnerability that can let an attacker run arbitrary code after a user opens a malicious workbook. Microsoft published the flaw on July 14, 2026, with a CVSS 3.1 score of 7.8 and the vector AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H. The apparent...