Patch tracker / Products / Microsoft Office Online Server

Microsoft Office Online Server: vulnerabilities and security updates

Every CVE affecting Microsoft Office Online Server and the Microsoft update (KB) that fixes it, ranked by real-world risk. Actively exploited (CISA KEV) first, then EPSS exploit probability, on top of CVSS severity.

CVEs
6
Updates (KBs)
4
Actively exploited (KEV)
0
Critical Severity
0

CVEs affecting Microsoft Office Online Server

CVESeverityCVSSEPSSStatus
CVE-2024-49026High7.81.0%-
CVE-2024-49027High7.81.0%-
CVE-2024-49028High7.81.0%-
CVE-2024-49029High7.81.0%-
CVE-2024-49030High7.81.0%-
CVE-2024-43465High7.80.8%-

Updates (KBs) for Microsoft Office Online Server

UpdateReleasedSeverityCVSSEPSSCVEsStatus
KB50026482024-11-12High7.81.0%1-
KB50026532024-11-12High7.81.0%5-
KB50026012024-09-10High7.80.8%1-
KB50026052024-09-10High7.80.8%1-

Ranked across all products on the Microsoft patch tracker and the CVE and vulnerability management reference. Browse every product: product index.

Most searched on Senserva right now

New to a term on this page? CVE, KB, KEV, CVSS, and EPSS are each explained once, on the Senserva security lexicon. Reference: Microsoft CVE and vulnerability management and the Microsoft patching guide.
Provided as is, without warranty; verify against the vendor advisory before acting. Data notice and terms.