Description

Reliance on untrusted inputs in a security decision in Microsoft Office allows an unauthorized attacker to bypass a security feature locally.

INFO

Published Date :

2026-01-26T17:06:35.512Z

Last Modified :

2026-04-01T13:49:28.047Z

Source :

microsoft
AFFECTED PRODUCTS

The following products are affected by CVE-2026-21509 vulnerability.

Vendors Products
Microsoft
  • 365 Apps
  • Office
  • Office 2016
  • Office 2019
  • Office 2021
  • Office 2024
  • Office Long Term Servicing Channel

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact