Microsoft Office for Mac
by Microsoft
CVEs (207)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-21823 | 0.12 | — | 0.02 | KEV | Feb 14, 2023 | Windows Graphics Component Remote Code Execution Vulnerability | ||
| CVE-2023-21716 | 0.07 | — | 0.91 | Feb 14, 2023 | Microsoft Word Remote Code Execution Vulnerability | |||
| CVE-2023-28311 | 0.04 | — | 0.08 | Apr 11, 2023 | Microsoft Word Remote Code Execution Vulnerability | |||
| CVE-2023-23399 | 0.04 | — | 0.07 | Mar 14, 2023 | Microsoft Excel Remote Code Execution Vulnerability | |||
| CVE-2025-47175 | 0.03 | — | 0.01 | Jun 10, 2025 | Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-47165 | 0.03 | — | 0.01 | Jun 10, 2025 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27751 | 0.03 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2023-33133 | 0.03 | — | 0.37 | Jun 13, 2023 | Microsoft Excel Remote Code Execution Vulnerability | |||
| CVE-2023-32029 | 0.03 | — | 0.40 | Jun 13, 2023 | Microsoft Excel Remote Code Execution Vulnerability | |||
| CVE-2023-28285 | 0.03 | — | 0.02 | Apr 11, 2023 | Microsoft Office Remote Code Execution Vulnerability | |||
| CVE-2013-0095 | 0.02 | — | 0.29 | Mar 13, 2013 | Outlook in Microsoft Office for Mac 2008 before 12.3.6 and Office for Mac 2011 before 14.3.2 allows remote attackers to trigger access to a remote URL and consequently confirm the rendering of an HTML e-mail message by including unspecified HTML5 elements and leveraging the… | |||
| CVE-2022-44713 | 0.01 | — | 0.11 | Dec 13, 2022 | Microsoft Outlook for Mac Spoofing Vulnerability | |||
| CVE-2022-41031 | 0.01 | — | 0.08 | Oct 11, 2022 | Microsoft Word Remote Code Execution Vulnerability | |||
| CVE-2026-26109 | 0.00 | — | 0.00 | Mar 10, 2026 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2026-26108 | 0.00 | — | 0.00 | Mar 10, 2026 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2026-26107 | 0.00 | — | 0.00 | Mar 10, 2026 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2026-26113 | 0.00 | — | 0.00 | Mar 10, 2026 | Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2026-26112 | 0.00 | — | 0.00 | Mar 10, 2026 | Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2026-21261 | 0.00 | — | 0.00 | Feb 10, 2026 | Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. | |||
| CVE-2026-21511 | 0.00 | — | 0.00 | Feb 10, 2026 | Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network. |
- risk 0.12cvss —epss 0.02
Windows Graphics Component Remote Code Execution Vulnerability
- CVE-2023-21716Feb 14, 2023risk 0.07cvss —epss 0.91
Microsoft Word Remote Code Execution Vulnerability
- CVE-2023-28311Apr 11, 2023risk 0.04cvss —epss 0.08
Microsoft Word Remote Code Execution Vulnerability
- CVE-2023-23399Mar 14, 2023risk 0.04cvss —epss 0.07
Microsoft Excel Remote Code Execution Vulnerability
- CVE-2025-47175Jun 10, 2025risk 0.03cvss —epss 0.01
Use after free in Microsoft Office PowerPoint allows an unauthorized attacker to execute code locally.
- CVE-2025-47165Jun 10, 2025risk 0.03cvss —epss 0.01
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2025-27751Apr 8, 2025risk 0.03cvss —epss 0.01
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2023-33133Jun 13, 2023risk 0.03cvss —epss 0.37
Microsoft Excel Remote Code Execution Vulnerability
- CVE-2023-32029Jun 13, 2023risk 0.03cvss —epss 0.40
Microsoft Excel Remote Code Execution Vulnerability
- CVE-2023-28285Apr 11, 2023risk 0.03cvss —epss 0.02
Microsoft Office Remote Code Execution Vulnerability
- CVE-2013-0095Mar 13, 2013risk 0.02cvss —epss 0.29
Outlook in Microsoft Office for Mac 2008 before 12.3.6 and Office for Mac 2011 before 14.3.2 allows remote attackers to trigger access to a remote URL and consequently confirm the rendering of an HTML e-mail message by including unspecified HTML5 elements and leveraging the…
- CVE-2022-44713Dec 13, 2022risk 0.01cvss —epss 0.11
Microsoft Outlook for Mac Spoofing Vulnerability
- CVE-2022-41031Oct 11, 2022risk 0.01cvss —epss 0.08
Microsoft Word Remote Code Execution Vulnerability
- CVE-2026-26109Mar 10, 2026risk 0.00cvss —epss 0.00
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2026-26108Mar 10, 2026risk 0.00cvss —epss 0.00
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2026-26107Mar 10, 2026risk 0.00cvss —epss 0.00
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2026-26113Mar 10, 2026risk 0.00cvss —epss 0.00
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2026-26112Mar 10, 2026risk 0.00cvss —epss 0.00
Untrusted pointer dereference in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2026-21261Feb 10, 2026risk 0.00cvss —epss 0.00
Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally.
- CVE-2026-21511Feb 10, 2026risk 0.00cvss —epss 0.00
Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
Page 3 of 11