<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Office-for-Mac on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/office-for-mac/</link><description>Recent content in Office-for-Mac on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Thu, 19 Jun 2025 14:00:00 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/office-for-mac/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-44818: Excel for Mac RCE Vulnerability</title><link>https://zxcloudsecurity.co.uk/posts/cve-2026-44818-microsoft-excel-mac-remote-code-execution/</link><pubDate>Fri, 19 Jun 2026 14:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/cve-2026-44818-microsoft-excel-mac-remote-code-execution/</guid><description>Microsoft patches CVE-2026-44818, a remote code execution flaw in Excel for Mac. Find out what&amp;#39;s affected and how to protect your organisation.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-44818">Microsoft Security Response Center</a></p>
<hr>
<p>A remote code execution vulnerability (CVE-2026-44818) has been identified in Microsoft Excel for Mac. An attacker who successfully exploits this flaw could execute arbitrary code on a victim&rsquo;s machine, typically by convincing a user to open a malicious Excel file. Only users running Microsoft Office for Mac are affected; other Office platforms do not require action.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure all macOS endpoints running Microsoft Office are patched immediately via the update released by Microsoft. If you manage a fleet of Macs through Intune or a third-party MDM solution, prioritise deploying this update and validate compliance reporting to confirm coverage before threat actors can weaponise a public proof-of-concept.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-44818">CVE-2026-44818 Microsoft Excel Remote Code Execution Vulnerability</a></p>
]]></content:encoded></item><item><title>CVE-2026-44819: Microsoft Office for Mac RCE Vulnerability</title><link>https://zxcloudsecurity.co.uk/posts/microsoft-office-mac-remote-code-execution-cve-2026-44819/</link><pubDate>Fri, 19 Jun 2026 14:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/microsoft-office-mac-remote-code-execution-cve-2026-44819/</guid><description>Microsoft patches CVE-2026-44819, a remote code execution flaw in Office for Mac. Learn what&amp;#39;s affected and the steps to protect your organisation.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-44819">Microsoft Security Response Center</a></p>
<hr>
<p>A remote code execution vulnerability (CVE-2026-44819) has been identified in Microsoft Office for Mac, allowing attackers to potentially execute arbitrary code on affected systems. Microsoft has released security updates to address the flaw, and only Mac users running affected Office software need to act. Users on other platforms are not impacted.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure all macOS endpoints running Microsoft Office are patched immediately via your MDM or endpoint management tooling; prioritise any devices with access to cloud environments or sensitive data, and verify compliance through your endpoint detection inventory.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-44819">CVE-2026-44819 Microsoft Office Remote Code Execution Vulnerability</a></p>
]]></content:encoded></item><item><title>CVE-2026-45458: Microsoft Outlook &amp; Word RCE Fix</title><link>https://zxcloudsecurity.co.uk/posts/cve-2026-45458-microsoft-outlook-word-remote-code-execution-mac/</link><pubDate>Fri, 19 Jun 2026 14:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/cve-2026-45458-microsoft-outlook-word-remote-code-execution-mac/</guid><description>Microsoft patches CVE-2026-45458, a remote code execution flaw in Outlook and Word for Mac. Mac users should update immediately to stay protected.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45458">Microsoft Security Response Center</a></p>
<hr>
<p>A remote code execution vulnerability (CVE-2026-45458) has been identified in Microsoft Outlook and Word for Mac. Microsoft has released security updates to address the flaw, and Mac users running affected versions of these Office applications should apply the patch immediately. Users on other platforms are not affected and no further action is required from them.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure any Mac endpoints in your organisation running Microsoft Outlook or Word are updated promptly via your MDM solution or patch management tooling — prioritise devices with access to sensitive cloud environments or corporate email, as RCE vulnerabilities in mail and document clients present a significant initial-access risk.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45458">CVE-2026-45458 Microsoft Outlook and Word Remote Code Execution Vulnerability</a></p>
]]></content:encoded></item></channel></rss>