All news & advisories
Medium

CVE-2026-81387: Security Advisory

CVE-2026-81387 CVSS 5.5
Who it affects
See the summary below.
What to do
Apply the vendor's update in your next patch window.

CVE-2026-81387

Severity: MEDIUM (CVSS 5.5)
KEV Status: Not currently exploited

Affected Products

  • Microsoft Defender Business

Vulnerability Description

Exposure of sensitive system information to an unauthorized control sphere in Microsoft Office Excel allows unauthorized local disclosure of information.

Remediation

Apply security updates from Microsoft. See: https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-81387

Notes

  • Local attack vector required
  • No evidence of active exploitation at this time
Data as of September 9, 2026. Sources: nvd.nist.gov, msrc.microsoft.com. Figures are pulled from public vendor and security data and refreshed automatically.
Back to all news & advisories