CVE-2026-33822

CWE-125Out-of-bounds Read3 documents3 sources
Severity
6.1MEDIUM
EPSS
No EPSS data
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 14

Description

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:HExploitability: 1.8 | Impact: 4.2

Affected Packages3 packages

CVEListV5microsoft/microsoft_office_ltsc_for_mac_202116.0.116.108.26041219
CVEListV5microsoft/microsoft_office_ltsc_for_mac_202416.0.016.108.26041219
CVEListV5microsoft/microsoft_365_apps_for_enterprise16.0.1https://aka.ms/OfficeSecurityReleases

🔴Vulnerability Details

2
VulDB
Microsoft Office LTSC Word out-of-bounds2026-04-14
CVEList
Microsoft Word Information Disclosure Vulnerability2026-04-14
CVE-2026-33822 (MEDIUM CVSS 6.1) | Out-of-bounds read in Microsoft Off | cvebase.io