1 vulnerability across 1 product scored HIGH or above on August 04, 2026.
- ๐ HIGH: 1
Exploit Status Upgrades
The following CVEs from previous bulletins have been upgraded based on new exploit intelligence:
- [UPGRADED] CVE-2026-67305 (freerdp/freerdp) โ F1: exploitable โ functional, AAS: 10.0 โ 12.0 (HIGH โ CRITICAL). Originally in 2026-08-01 bulletin.
- [UPGRADED] CVE-2026-15988 (suspended_starter/ai_engine) โ F1: exploitable โ functional, AAS: 9.6 โ 11.6 (HIGH โ HIGH). Originally in 2026-08-01 bulletin.
- [UPGRADED] CVE-2026-67320 (axios/axios) โ F1: theoretical โ poc, AAS: 9.4 โ 11.9 (HIGH โ HIGH). Originally in 2026-08-01 bulletin.
๐ [HIGH] microsoft/microsoft_365_apps_for_enterprise
1 CVE | CVSS 3.1: 8.8 | AAS 9.1
cpe:2.3:a:microsoft:microsoft_365_apps_for_enterprise:*:*:*:*:*:*:*:*
Microsoft 365 Apps for Enterprise is affected by one high-severity vulnerability (CVE-2026-62870, CVSS 8.8) involving a use-after-free condition in Microsoft Office Excel that allows an unauthorized attacker to achieve remote code execution over a network. Organizations running Microsoft 365 Apps for Enterprise should treat this as a priority patch, particularly given the network-exploitable nature of the flaw and its high severity rating. Administrators should apply the latest security updates from Microsoft immediately and review the vendor advisory at https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62870 for full details on affected versions and remediation guidance.
- ๐ CVE-2026-62870 (CVSS 3.1: 8.8)