Microsoft Word 2016 vulnerabilities

50 known vulnerabilities affecting microsoft/microsoft_word_2016.

Total CVEs
50
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
2
Severity breakdown
CRITICAL2HIGH38MEDIUM10

Vulnerabilities

Page 2 of 3
CVE-2025-24078HIGHCVSS 7.0≥ 16.0.1, < 16.0.18526.200802025-03-11
CVE-2025-24078 [HIGH] CWE-416 CVE-2025-24078: Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
cvelistv5nvd
CVE-2025-24079HIGHCVSS 7.8≥ 16.0.1, < 16.0.18526.200802025-03-11
CVE-2025-24079 [HIGH] CWE-416 CVE-2025-24079: Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
cvelistv5nvd
CVE-2024-49065MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5478.10002024-12-12
CVE-2024-49065 [MEDIUM] CWE-125 CVE-2024-49065: Microsoft Office Remote Code Execution Vulnerability Microsoft Office Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-49033HIGHCVSS 7.5≥ 16.0.1, < 16.0.5474.10002024-11-12
CVE-2024-49033 [HIGH] CWE-20 CVE-2024-49033: Microsoft Word Security Feature Bypass Vulnerability Microsoft Word Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2024-20673HIGHCVSS 7.8≥ 16.0.1, < 16.0.5435.10002024-02-13
CVE-2024-20673 [HIGH] CWE-693 CVE-2024-20673: Microsoft Office Remote Code Execution Vulnerability Microsoft Office Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2024-21379HIGHCVSS 7.8≥ 16.0.1, < 16.0.5435.10002024-02-13
CVE-2024-21379 [HIGH] CWE-190 CVE-2024-21379: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-36762HIGHCVSS 7.3≥ 16.0.1, < 16.0.5413.10002023-09-12
CVE-2023-36762 [HIGH] CWE-20 CVE-2023-36762: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2023-36761MEDIUMCVSS 6.5KEV≥ 16.0.1, < 16.0.5413.10002023-09-12
CVE-2023-36761 [MEDIUM] CWE-20 CVE-2023-36761: Microsoft Word Information Disclosure Vulnerability Microsoft Word Information Disclosure Vulnerability
cvelistv5nvd
CVE-2023-33150CRITICALCVSS 9.6≥ 16.0.1, < 16.0.5404.10002023-07-11
CVE-2023-33150 [CRITICAL] CWE-693 CVE-2023-33150: Microsoft Office Security Feature Bypass Vulnerability Microsoft Office Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2023-29335HIGHCVSS 7.5≥ 16.0.1, < 16.0.5395.10002023-05-09
CVE-2023-29335 [HIGH] CWE-20 CVE-2023-29335: Microsoft Word Security Feature Bypass Vulnerability Microsoft Word Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2023-21716CRITICALCVSS 9.8Exploited≥ 16.0.1, < 16.0.5383.10002023-02-14
CVE-2023-21716 [CRITICAL] CWE-190 CVE-2023-21716: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-41061HIGHCVSS 7.8≥ 16.0.1, < 16.0.5369.10002022-11-09
CVE-2022-41061 [HIGH] CWE-94 CVE-2022-41061: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2022-41103MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5369.10002022-11-09
CVE-2022-41103 [MEDIUM] CVE-2022-41103: Microsoft Word Information Disclosure Vulnerability Microsoft Word Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-41060MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5369.10002022-11-09
CVE-2022-41060 [MEDIUM] CVE-2022-41060: Microsoft Word Information Disclosure Vulnerability Microsoft Word Information Disclosure Vulnerability
cvelistv5nvd
CVE-2022-29107MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5317.10002022-05-10
CVE-2022-29107 [MEDIUM] CVE-2022-29107: Microsoft Office Security Feature Bypass Vulnerability Microsoft Office Security Feature Bypass Vulnerability
cvelistv5nvd
CVE-2022-24511MEDIUMCVSS 5.5≥ 16.0.1, < 16.0.5290.10002022-03-09
CVE-2022-24511 [MEDIUM] Microsoft Office Word Tampering Vulnerability Microsoft Office Word Tampering Vulnerability Microsoft Office Word Tampering Vulnerability
cvelistv5
CVE-2022-21842HIGHCVSS 7.8≥ 16.0.1, < 16.0.5266.10002022-01-11
CVE-2022-21842 [HIGH] CVE-2022-21842: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-40486HIGHCVSS 7.8≥ 16.0.1, < 16.0.5227.10002021-10-13
CVE-2021-40486 [HIGH] CVE-2021-40486: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-34452HIGHCVSS 7.8≥ 16.0.1, < 16.0.5188.10002021-07-16
CVE-2021-34452 [HIGH] CVE-2021-34452: Microsoft Word Remote Code Execution Vulnerability Microsoft Word Remote Code Execution Vulnerability
cvelistv5nvd
CVE-2021-31180HIGHCVSS 7.8≥ 16.0.1, < publication2021-05-11
CVE-2021-31180 [HIGH] CVE-2021-31180: Microsoft Office Graphics Remote Code Execution Vulnerability Microsoft Office Graphics Remote Code Execution Vulnerability
cvelistv5nvd