HIGHVulnerability
Verified
Global

CISA KEV: Microsoft Visual Basic for Applications (VBA) — Microsoft Visual Basic for Applications Insecure Library Loading Vulnerability

·Source: CISA KEV

Updated:

Executive Summary

Microsoft Visual Basic for Applications (VBA) contains an insecure library loading vulnerability that could allow for remote code execution.

Analysis

Microsoft Visual Basic for Applications (VBA) contains an insecure library loading vulnerability that could allow for remote code execution. Added to CISA Known Exploited Vulnerabilities catalog on 2026-04-13. Remediation due: 2026-04-27.

Indicators of Compromise (1)

CVE (1)
CVE-2012-1854
Source Attribution

Originally published by CISA KEV on Apr 13, 2026. Verified by: CISA.

Related Threats