CVE-2026-81387
Severity: MEDIUM (CVSS 5.5)
KEV Status: Not currently exploited
Affected Products
- Microsoft Defender Business
Vulnerability Description
Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows unauthorized local disclosure of information.
Remediation
Apply security updates from Microsoft. See: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81387
Notes
- Local attack vector required
- No evidence of active exploitation at this time