Microsoft Office for Mac
by Microsoft
CVEs (207)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-29822 | 0.00 | — | 0.01 | Apr 8, 2025 | Incomplete list of disallowed inputs in Microsoft Office OneNote allows an unauthorized attacker to bypass a security feature locally. | |||
| CVE-2025-29820 | 0.00 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-29791 | 0.00 | — | 0.01 | Apr 8, 2025 | Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27750 | 0.00 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27752 | 0.00 | — | 0.01 | Apr 8, 2025 | Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27749 | 0.00 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27747 | 0.00 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27748 | 0.00 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27746 | 0.00 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-27745 | 0.00 | — | 0.01 | Apr 8, 2025 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24075 | 0.00 | — | 0.00 | Mar 11, 2025 | Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24083 | 0.00 | — | 0.00 | Mar 11, 2025 | Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24082 | 0.00 | — | 0.00 | Mar 11, 2025 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24081 | 0.00 | — | 0.00 | Mar 11, 2025 | Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24079 | 0.00 | — | 0.00 | Mar 11, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24078 | 0.00 | — | 0.00 | Mar 11, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24077 | 0.00 | — | 0.00 | Mar 11, 2025 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-24057 | 0.00 | — | 0.00 | Mar 11, 2025 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | |||
| CVE-2025-21394 | 0.00 | — | 0.00 | Feb 11, 2025 | Microsoft Excel Remote Code Execution Vulnerability | |||
| CVE-2025-21392 | 0.00 | — | 0.00 | Feb 11, 2025 | Microsoft Office Remote Code Execution Vulnerability |
- CVE-2025-29822Apr 8, 2025risk 0.00cvss —epss 0.01
Incomplete list of disallowed inputs in Microsoft Office OneNote allows an unauthorized attacker to bypass a security feature locally.
- CVE-2025-29820Apr 8, 2025risk 0.00cvss —epss 0.01
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- CVE-2025-29791Apr 8, 2025risk 0.00cvss —epss 0.01
Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2025-27750Apr 8, 2025risk 0.00cvss —epss 0.01
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2025-27752Apr 8, 2025risk 0.00cvss —epss 0.01
Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2025-27749Apr 8, 2025risk 0.00cvss —epss 0.01
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2025-27747Apr 8, 2025risk 0.00cvss —epss 0.01
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- CVE-2025-27748Apr 8, 2025risk 0.00cvss —epss 0.01
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2025-27746Apr 8, 2025risk 0.00cvss —epss 0.01
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2025-27745Apr 8, 2025risk 0.00cvss —epss 0.01
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2025-24075Mar 11, 2025risk 0.00cvss —epss 0.00
Stack-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2025-24083Mar 11, 2025risk 0.00cvss —epss 0.00
Untrusted pointer dereference in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2025-24082Mar 11, 2025risk 0.00cvss —epss 0.00
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2025-24081Mar 11, 2025risk 0.00cvss —epss 0.00
Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally.
- CVE-2025-24079Mar 11, 2025risk 0.00cvss —epss 0.00
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- CVE-2025-24078Mar 11, 2025risk 0.00cvss —epss 0.00
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- CVE-2025-24077Mar 11, 2025risk 0.00cvss —epss 0.00
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
- CVE-2025-24057Mar 11, 2025risk 0.00cvss —epss 0.00
Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
- CVE-2025-21394Feb 11, 2025risk 0.00cvss —epss 0.00
Microsoft Excel Remote Code Execution Vulnerability
- CVE-2025-21392Feb 11, 2025risk 0.00cvss —epss 0.00
Microsoft Office Remote Code Execution Vulnerability
Page 8 of 11