Patch tracker / KB5002849
KB5002849
Microsoft security update released 2026-03-10. Fixes 4 CVEs.
High
Download KB5002849
Get the official update for KB5002849. The download and file size for each supported product are on the Microsoft Update Catalog page.
Update summary
Released
2026-03-10
CVEs fixed
4
Max CVSS
8.4
Severity
High
Exploitation and severity
Fixes 4 CVEs. Most severe CVSS 8.4 (High). EPSS exploit probability up to <1%.
Among the lower half of tracked Microsoft updates by EPSS exploit probability.
What to do
Moderate priority: schedule it in your normal patch cycle. Senserva flags whether KB5002849 is missing on your devices.
CVEs fixed by this update
Affected products
- Microsoft Office 2019 for 32-bit editions
- Microsoft Office 2019 for 64-bit editions
- Office Online Server
See this and every Microsoft update ranked by real-world risk on the Microsoft Patch Tracker.