Microsoft Word 2016 vulnerabilities
120 known vulnerabilities affecting microsoft/microsoft_word_2016.
Total CVEs
120
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL3HIGH79MEDIUM38
Vulnerabilities
Page 1 of 6
CVE-2023-36761P2MEDIUMCVSS 6.5KEV≥ 16.0.1, < 16.0.5413.10002023-09-12
CVE-2023-36761 [MEDIUM] CWE-20 CVE-2023-36761: Microsoft Word Information Disclosure Vulnerability
Microsoft Word Information Disclosure Vulnerability
nvd
CVE-2023-21716P1CRITICALCVSS 9.8ExploitedPoC≥ 16.0.1, < 16.0.5383.10002023-02-14
CVE-2023-21716 [CRITICAL] CWE-190 CVE-2023-21716: Microsoft Word Remote Code Execution Vulnerability
Microsoft Word Remote Code Execution Vulnerability
nvd
CVE-2026-78509P2CRITICALCVSS 9.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78509 [CRITICAL] CWE-122 CVE-2026-78509: Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute co
Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69759P2HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-69759 [HIGH] CWE-121 CVE-2026-69759: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69686P2HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-69686 [HIGH] CWE-121 CVE-2026-69686: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69722P2HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-69722 [HIGH] CWE-121 CVE-2026-69722: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78504P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78504 [HIGH] CWE-121 CVE-2026-78504: Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69671P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10022026-09-08
CVE-2026-69671 [HIGH] CWE-122 CVE-2026-69671: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-72972P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-72972 [HIGH] CWE-122 CVE-2026-72972: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69556P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10022026-09-08
CVE-2026-69556 [HIGH] CWE-122 CVE-2026-69556: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-72973P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-72973 [HIGH] CWE-122 CVE-2026-72973: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78511P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78511 [HIGH] CWE-122 CVE-2026-78511: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-69764P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10022026-09-08
CVE-2026-69764 [HIGH] CWE-122 CVE-2026-69764: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78525P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78525 [HIGH] CWE-416 CVE-2026-78525: Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a ne
Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-80080P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-80080 [HIGH] CWE-415 CVE-2026-80080: Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-40364P3HIGHCVSS 8.4≥ 16.0.1, < 16.0.5552.10002026-05-12
CVE-2026-40364 [HIGH] CWE-122 CVE-2026-40364: Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an una
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-78514P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78514 [HIGH] CWE-416 CVE-2026-78514: Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a netwo
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78517P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78517 [HIGH] CWE-122 CVE-2026-78517: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78521P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10002026-09-08
CVE-2026-78521 [HIGH] CWE-122 CVE-2026-78521: Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
CVE-2026-78512P3HIGHCVSS 8.8≥ 16.0.1, < 16.0.5569.10032026-09-08
CVE-2026-78512 [HIGH] CWE-122 CVE-2026-78512: Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code ov
Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network.
nvd
1 / 6Next →