CVE-2026-78519 – Microsoft Office Outlook Remote Code Execution Vulnerability

CVSS 8.8 IMPORTANT Critical - Same Day Deployment

“A malicious email can turn Outlook into a path for remote code execution, putting affected systems and business data at risk.”

CVE-2026-78519 is a critical remote code execution vulnerability in Microsoft Office Outlook caused by the use of an uninitialized resource. An unauthorized attacker can send a specially crafted email to a victim, and exploitation may occur when the victim opens the email or when an affected Outlook application displays its preview. Successful exploitation could allow the attacker to execute remote code on the victim’s machine.

Key Details

Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
CWE Classification
CWE-908
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.