Skip to main content
E
Echelon
Graph
Product
Directory
Enterprise
Compliance
Pulse
AI Analyst
Compare
Docs
Login
Start Free
Pulse
›
Vendor Advisories
›
Microsoft Security Response Center (MSRC)
›
CVE-2026-40358
CVE-2026-40358
Remote Code Execution
CVSS
8.4
Microsoft Office Remote Code Execution Vulnerability
Vendor
Microsoft Security Response Center (MSRC)
Published
May 22, 2026
Last Modified
—
🔗 CVE IDs covered (1)
CVE-2026-40358 →
📋 Description
<p>Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.</p>