🟡 Medium  |  Source: Microsoft Security Response Center


A security vulnerability (CVE-2026-44821) in Microsoft Office for Mac could allow an attacker to disclose sensitive information from affected systems. Microsoft has released a security update specifically for Mac users running affected versions of Office. Users on other platforms are not affected and do not need to take action.

Security Architect’s Take: Ensure any managed Mac endpoints running Microsoft Office are patched promptly via your MDM solution (e.g. Intune or Jamf); validate compliance reporting to confirm affected versions are no longer present in your estate.

Original advisory: CVE-2026-44821 Microsoft Office Information Disclosure Vulnerability