CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-70320

mediumCVSS 5.5covered by 4 sourcesfirst seen 2026-08-11
Multiple vulnerabilities have been discovered in Microsoft Office. Some of them allow an attacker to cause remote arbitrary code execution, privilege escalation and breach of data confidentiality.

CSIRTS triage

What
Multiple vulnerabilities in Microsoft Office enable remote code execution, privilege escalation, and data confidentiality breaches.
Who is affected
Users of Microsoft Office with versions affected by CVE-2026-66807, CVE-2026-64911, CVE-2026-70310, CVE-2026-68814, CVE-2026-68799, CVE-2026-62842, CVE-2026-63526, and CVE-2026-63517.
Urgency
Highly urgent; remote code execution vulnerabilities in widely-used productivity software pose significant risk.
Action
Apply Microsoft August 2026 security patches immediately for all Office installations.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-70320

Get an email if CVE-2026-70320 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (4)

External references

NVD record for CVE-2026-70320

CVE.org record

Embed the live status

CVE-2026-70320 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-70320 status](https://www.csirts.com/badge/CVE-2026-70320)](https://www.csirts.com/cve/CVE-2026-70320)