outlook vulnerabilities
CVEs whose affected-version data names the outlook package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
4 CVEsRSS
CVE-2026-80073Medium· 6.5Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to disclose information over a network.
Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to disclose information over a network.
▾ Sunlitmicrosoft · 365_appsEPSS 0.92%via NVD
CVE-2026-78519High· 8.8Use of uninitialized resource in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
Use of uninitialized resource in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
▾ Twilightmicrosoft · 365_appsEPSS 0.60%via NVD
CVE-2026-69629High· 8.8Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
▾ Twilightmicrosoft · 365_appsEPSS 0.82%via NVD
CVE-2024-30103High· 8.8Microsoft Outlook Remote Code Execution Vulnerability
Microsoft Outlook Remote Code Execution Vulnerability
▾ Twilightmicrosoft · 365_appsEPSS 3.4%via NVD