Skip to content

July Office updates include a real worry

The July 2025 security bug fixes list plugs another 137 problems found in Microsoft software. Some are really serious and need patching right away for all Microsoft 365 and Office users.  BitLocker also gets some security fixes.

This months load of Microsoft Office security updates includes a fix for a series of “Remote Code Execution” bugs that allow code to be run on a device just by opening the document or viewing in a preview pane.  These five security bugs affect all supported versions of Office from Microsoft 365 and Office 2024 back to Office 2016 and are rightly rated as ‘Critical’.

Running the usual update process (if not done automatically) will ensure your software is protected.  While the critical bugs haven’t yet been used by hackers, it’s only a matter of time.

Office / Microsoft 365CVE-2025-49697Remote Code Execution VulnerabilityCritical
Office / Microsoft 365CVE-2025-49695Remote Code Execution VulnerabilityCritical
Office / Microsoft 365CVE-2025-49696Remote Code Execution VulnerabilityCritical
Office / Microsoft 365CVE-2025-49702Remote Code Execution VulnerabilityCritical
Word / Microsoft 365CVE-2025-49703Remote Code Execution VulnerabilityCritical
Word / Microsoft 365CVE-2025-49698Remote Code Execution VulnerabilityCritical
OfficeCVE-2025-47994Elevation of Privilege VulnerabilityImportant
OfficeCVE-2025-49699Remote Code Execution VulnerabilityImportant
ExcelCVE-2025-48812Information Disclosure VulnerabilityImportant
ExcelCVE-2025-49711Remote Code Execution VulnerabilityImportant
PowerPointCVE-2025-49705Remote Code Execution VulnerabilityImportant
WordCVE-2025-49700Remote Code Execution VulnerabilityImportant
Office Developer PlatformCVE-2025-49756Security Feature Bypass VulnerabilityImportant

Bitlocker fixes

Windows should also be updated, if only to plug these security holes in the vital BitLocker encryption system.

BitLockerCVE-2025-48818Security Feature Bypass VulnerabilityImportant
BitLockerCVE-2025-48001Security Feature Bypass VulnerabilityImportant
BitLockerCVE-2025-48804Security Feature Bypass VulnerabilityImportant
BitLockerCVE-2025-48003Security Feature Bypass VulnerabilityImportant
BitLockerCVE-2025-48800Security Feature Bypass VulnerabilityImportant

About this author

Office-Watch.com

Office Watch is the independent source of Microsoft Office news, tips and help since 1996. Don't miss our famous free newsletter.

Office 2024 - all you need to know. Facts & prices for the new Microsoft Office. Do you need it?

Microsoft Office upcoming support end date checklist.