Microsoft Office

Winsage
May 13, 2026
Microsoft released its May 2026 Patch Tuesday updates for Windows 11, addressing 97 security vulnerabilities across various components, including Windows, Microsoft Office, Azure services, SQL Server, SharePoint, Hyper-V, and .NET. The updates are encapsulated in KB5089549 for Windows 11 versions 24H2 and 25H2, elevating systems to builds 26100.8457 and 26200.8457. Notable vulnerabilities include CVE-2026-32169, a critical flaw in Azure Cloud Shell with a CVSS score of 10.0, and CVE-2026-21536, a critical remote code execution vulnerability in the Microsoft Devices Pricing Program with a CVSS score of 9.8. Other critical vulnerabilities include CVE-2026-32191 and CVE-2026-32194, impacting Microsoft Bing Images, both with CVSS scores of 9.8. The update also addresses multiple Windows privilege escalation vulnerabilities and remote code execution vulnerabilities in Microsoft Office and Excel. Microsoft has warned of upcoming Secure Boot certificate expirations starting in June 2026 and has improved boot reliability related to BitLocker recovery issues. Users can install the updates via Settings → Windows Update, with a system restart required.
Winsage
May 13, 2026
Microsoft's May 2026 security update addresses 137 vulnerabilities, with 31 classified as critical. None of these critical vulnerabilities are currently being exploited in active attacks. Sixteen of the critical vulnerabilities involve remote code execution (RCE) issues in Microsoft products, including Microsoft Office, Microsoft Word, and Azure. Specific vulnerabilities include: - CVE-2026-32161: A use-after-free vulnerability in the Windows Native WiFi Miniport Driver. - CVE-2026-40358: A use-after-free vulnerability in Microsoft Office. - CVE-2026-41089: A stack-based buffer overflow in Windows Netlogon. Additional important vulnerabilities flagged include: - CVE-2026-33835: Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability. - CVE-2026-33837: Windows TCP/IP Local Elevation of Privilege Vulnerability. - CVE-2026-35416: Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability. Talos is releasing a new Snort ruleset to detect attempts to exploit these vulnerabilities, and users are advised to update their Cisco Security Firewalls and acquire the latest rule pack via Snort.org.
Winsage
May 11, 2026
Microsoft Office 2021 Pro and Windows 11 Pro are available for .97, reduced from an MSRP of 9.99, until May 18. This bundle includes lifetime licenses for both applications, eliminating monthly subscription fees. Microsoft Office 2021 Pro includes Word, Excel, PowerPoint, Outlook, Access, and Publisher, while Windows 11 Pro features BitLocker encryption, Smart App Control, enhanced security protections, Snap layouts, an upgraded search function, and a built-in AI assistant. Both licenses are tied to a single device, and Office 2021 will not receive continuous feature updates like Microsoft 365.
Winsage
May 8, 2026
Microsoft Office Professional 2021 is available for .97, significantly reduced from its regular price of 9.99. It includes essential applications such as Word, Excel, PowerPoint, Outlook, OneNote, Access, and Publisher, along with a free version of Teams. This software can be installed on one Windows PC, supporting Windows 10 and Windows 11, but is not compatible with Windows 7, Windows 8, or virtual machines like Parallels Pro. The installation process is straightforward, providing a simple solution without the complexities of subscription models.
Winsage
May 7, 2026
You can purchase a bundle that includes Microsoft Office 2024 Home & Business for PC or Mac and Windows 11 Pro for .97, down from .99. The offer is available until May 17 at 11:59 p.m. PT. Windows 11 Pro features faster application performance, multitasking capabilities, and advanced security measures. Office 2024 includes essential tools like Word, Excel, PowerPoint, Outlook, and OneNote, with significant performance upgrades and a user-friendly design.
Winsage
May 6, 2026
On April 30, 2026, Microsoft Defender misclassified two legitimate DigiCert root certificates as a severe threat, specifically Trojan:Win32/Cerdigent.A!dha, leading to their quarantine and disrupting SSL/TLS validation across affected endpoints. This misclassification was a result of new malware detections introduced by Microsoft in response to concerns over compromised certificates from a DigiCert breach. The false-positive alerts were triggered by the registry entries of the two trusted root certificates, which are crucial for validating SSL/TLS sessions. Microsoft later acknowledged the error and adjusted the alert logic. There was no actual compromise of the DigiCert certificates, as administrators confirmed that the certificate hashes matched the official values. The misclassification stemmed from a failure to properly constrain the detection to only revoked end-entity signing certificates related to a separate incident. This incident follows a pattern of Microsoft Defender misidentifying legitimate software as malicious, as seen in a 2022 incident where Microsoft Office was flagged as a virus. Organizations with restrictive update policies may continue to face SSL/TLS validation failures until they deploy the corrective Security Intelligence version or manually restore the DigiCert roots.
Winsage
May 6, 2026
A bundle is available for .99 that includes Windows 11 Pro and a lifetime license for Microsoft Office 2019, significantly reduced from the regular price of 8. This package allows users to upgrade their older PCs from Windows 10 to a supported operating system while eliminating subscription fees for Office applications. Windows 11 Pro offers advanced security features and improved usability, while Office 2019 can be installed on a single device without ongoing costs. Both licenses are tied to one device, making it suitable for enhancing a single machine.
Winsage
April 30, 2026
The Microsoft Office Pro 2019 and Windows 11 Pro bundle is available for a one-time payment of .97, down from its MSRP of 9.99, until May 3. The bundle includes a lifetime license for Microsoft Office applications (Word, Excel, PowerPoint, and Outlook) and Windows 11 Pro, which features performance improvements and advanced tools like BitLocker encryption and an AI assistant called Copilot. Office 2019 is noted for its stability and reliability.
Winsage
April 27, 2026
India’s cybersecurity agency, CERT-In, has issued an advisory regarding high-severity vulnerabilities in various Microsoft products, including multiple versions of Windows, Windows Server, Microsoft Office, and the Chromium-based Microsoft Edge browser. These vulnerabilities can allow attackers to execute malicious code, elevate system privileges, access sensitive data, or disrupt services. They arise from issues such as improper input validation, memory corruption, insufficient access control, and inadequate memory object handling. Exploitation can occur remotely or locally, sometimes requiring user interaction. CERT-In advises users and organizations to apply the latest security updates from Microsoft to mitigate these risks.
Winsage
April 25, 2026
On April 24, a protest organized by environmental and consumer advocacy groups took place outside the Microsoft France office in Paris to oppose the company's decision to discontinue support for the Windows 10 operating system. Activists claim this could lead to the obsolescence of approximately 300 million computers worldwide, resulting in 58 million tons of carbon dioxide emissions and significant depletion of raw materials. Consumers may face an average cost of €600 for new devices if they upgrade. Experts warn users must choose between expensive new hardware or risking financial fraud due to lack of security updates. The organization Halte à l'Obsolescence Programmée is gathering signatures for a petition advocating for a mandatory 15-year software support period. Public advocacy previously convinced Microsoft to extend its software update releases by an additional 12 months. The protest aims to raise awareness and apply pressure until the end of October.
Search