# CERT-FR Flags Mass Microsoft Office CVE Batch

Published: 2026-08-12 · Severity: routine
Canonical: https://vorant.io/reports/aba57f6d-ff64-54d0-912a-138a9e40b7e3/cert-fr-flags-mass-microsoft-office-cve-batch

> CERT-FR advisory lists over 100 Microsoft Office vulnerabilities patched in the August 2026 update covering RCE, privilege escalation, and data exposure.

CERT-FR published a routine security advisory summarizing a large batch of vulnerabilities affecting multiple Microsoft Office products, including Office 2016, 2019, LTSC 2021/2024, Access, Excel, Outlook, PowerPoint, Word, and Microsoft 365 Apps for Enterprise across Windows and Mac platforms. The advisory references over 100 individual CVEs disclosed by Microsoft's security bulletin dated 11 August 2026, with impacts ranging from remote code execution and privilege escalation to security bypass and confidentiality breaches.

No exploitation in the wild, proof-of-concept code, or specific threat actor activity is mentioned in the advisory. This is a standard vendor patch notification aggregated by the French national CERT, advising organizations to apply the vendor-supplied fixes referenced in the Microsoft Security Response Center update guide for each CVE. Given the scale of the update and reliance on Office as a common enterprise attack surface, organizations should prioritize patch deployment despite the absence of confirmed active exploitation.

## Mentioned in this report

- Vulnerabilities: CVE-2026-58651, CVE-2026-62842, CVE-2026-62882, CVE-2026-63513, CVE-2026-63515, CVE-2026-63517, CVE-2026-63518, CVE-2026-63519, CVE-2026-63521, CVE-2026-63524, CVE-2026-63525, CVE-2026-63526, CVE-2026-63527, CVE-2026-63528, CVE-2026-63529, CVE-2026-63530, CVE-2026-63531, CVE-2026-63532, CVE-2026-63533, CVE-2026-64898, CVE-2026-64899, CVE-2026-64903, CVE-2026-64904, CVE-2026-64905, CVE-2026-64906, CVE-2026-64907, CVE-2026-64908, CVE-2026-64909, CVE-2026-64910, CVE-2026-64911, CVE-2026-64912, CVE-2026-64914, CVE-2026-64915, CVE-2026-64917, CVE-2026-64919, CVE-2026-64920, CVE-2026-65656, CVE-2026-65657, CVE-2026-65661, CVE-2026-65664

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1000

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/aba57f6d-ff64-54d0-912a-138a9e40b7e3/cert-fr-flags-mass-microsoft-office-cve-batch.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
