Microsoft Word vulnerabilities
265 known vulnerabilities affecting microsoft/word.
Total CVEs
265
CISA KEV
10
actively exploited
Public exploits
20
Exploited in wild
18
Severity breakdown
CRITICAL79HIGH142MEDIUM42LOW2
Vulnerabilities
Page 12 of 14
CVE-2025-59221P3HIGHCVSS 7.0v20162025-10-14
CVE-2025-59221 [HIGH] CWE-416 CVE-2025-59221: Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2000-0419P4HIGHCVSS 7.5v20002000-05-11
CVE-2000-0419 [HIGH] CVE-2000-0419: The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
nvd
CVE-2018-0950P3MEDIUMCVSS 6.5v2007v2010+2 more2018-04-12
CVE-2018-0950 [MEDIUM] CVE-2018-0950: An information disclosure vulnerability exists when Office renders Rich Text Format (RTF) email mess
An information disclosure vulnerability exists when Office renders Rich Text Format (RTF) email messages containing OLE objects when a message is opened or previewed, aka "Microsoft Office Information Disclosure Vulnerability." This affects Microsoft Word, Microsoft Office. This CVE ID is unique from CVE-2018-1007.
nvd
CVE-2018-8160P3MEDIUMCVSS 6.5vAutomation Services on Microsoft SharePoint Server 2010 Service Pack 22018-05-09
CVE-2018-8160 [MEDIUM] CWE-200 CVE-2018-8160: An information disclosure vulnerability exists in Outlook when a message is opened, aka "Microsoft O
An information disclosure vulnerability exists in Outlook when a message is opened, aka "Microsoft Outlook Information Disclosure Vulnerability." This affects Word, Microsoft Office.
nvd
CVE-2015-2423P4MEDIUMCVSS 4.3v2007v2010+2 more2015-08-15
CVE-2015-2423 [MEDIUM] CWE-200 CVE-2015-2423: Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Excel 2007 SP3, PowerPoint 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Visio 2010 SP2, Word 2010 SP2, Excel 2013 SP1, PowerPoint
nvd
CVE-2025-24078P3HIGHCVSS 7.0v20162025-03-11
CVE-2025-24078 [HIGH] CWE-416 CVE-2025-24078: Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2025-49699P3HIGHCVSS 7.0v20162025-07-08
CVE-2025-49699 [HIGH] CWE-416 CVE-2025-49699: Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
nvd
CVE-2005-0558P4MEDIUMCVSS 5.1v2000v2002+1 more2005-05-02
CVE-2005-0558 [MEDIUM] CVE-2005-0558: Buffer overflow in Microsoft Word 2000, Word 2002, and Word 2003 allows remote attackers to execute
Buffer overflow in Microsoft Word 2000, Word 2002, and Word 2003 allows remote attackers to execute arbitrary code via a crafted document.
nvd
CVE-2013-6801P4HIGHCVSS 7.1v20032013-11-18
CVE-2013-6801 [HIGH] CWE-399 CVE-2013-6801: Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of servi
Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed .doc file containing an embedded image, as demonstrated by word2003forkbomb.doc, related to a "fork bomb" issue.
nvd
CVE-2021-31178P4MEDIUMCVSS 5.5v2013v20162021-05-11
CVE-2021-31178 [MEDIUM] CWE-191 CVE-2021-31178: Microsoft Office Information Disclosure Vulnerability
Microsoft Office Information Disclosure Vulnerability
nvd
CVE-2003-0664P4HIGHCVSS 7.5v97v98+2 more2003-10-20
CVE-2003-0664 [HIGH] CVE-2003-0664: Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, w
Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros via a malicious document.
nvd
CVE-2025-54905P4HIGHCVSS 7.1v20162025-09-09
CVE-2025-54905 [HIGH] CWE-822 CVE-2025-54905: Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to disclose i
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2025-53736P4MEDIUMCVSS 6.2v20162025-08-12
CVE-2025-53736 [MEDIUM] CWE-126 CVE-2025-53736: Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information lo
Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd
CVE-2018-8378P4MEDIUMCVSS 5.5vAutomation Services on Microsoft SharePoint Server 2010 Service Pack 22018-08-15
CVE-2018-8378 [MEDIUM] CWE-125 CVE-2018-8378: An information disclosure vulnerability exists when Microsoft Office software reads out of bound mem
An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory, aka "Microsoft Office Information Disclosure Vulnerability." This affects Word, Microsoft SharePoint Server, Microsoft Office Word Viewer, Microsoft Excel Viewer, Microso
nvd
CVE-2019-1461P4MEDIUMCVSS 6.5v2010v2013+1 more2019-12-10
CVE-2019-1461 [MEDIUM] CVE-2019-1461: A denial of service vulnerability exists in Microsoft Word software when the software fails to prope
A denial of service vulnerability exists in Microsoft Word software when the software fails to properly handle objects in memory, aka 'Microsoft Word Denial of Service Vulnerability'.
nvd
CVE-2019-0561P4MEDIUMCVSS 5.5v2010-sp2v2013-sp1+2 more2019-01-08
CVE-2019-0561 [MEDIUM] CVE-2019-0561: An information disclosure vulnerability exists when Microsoft Word macro buttons are used improperly
An information disclosure vulnerability exists when Microsoft Word macro buttons are used improperly, aka "Microsoft Word Information Disclosure Vulnerability." This affects Microsoft Word, Office 365 ProPlus, Microsoft Office, Word.
nvd
CVE-2020-1342P4MEDIUMCVSS 5.5v2010v2013+1 more2020-07-14
CVE-2020-1342 [MEDIUM] CWE-125 CVE-2020-1342: An information disclosure vulnerability exists when Microsoft Office software reads out of bound mem
An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninitialized variable, which could disclose the contents of memory, aka 'Microsoft Office Information Disclosure Vulnerability'. This CVE ID is unique from CVE-2020-1445.
nvd
CVE-2017-0029P4MEDIUMCVSS 5.5v2010v2013+1 more2017-03-17
CVE-2017-0029 [MEDIUM] CVE-2017-0029: Microsoft Office 2010 SP2, Word 2010 SP2, Word 2013 RT SP1, and Word 2016 allow remote attackers to
Microsoft Office 2010 SP2, Word 2010 SP2, Word 2013 RT SP1, and Word 2016 allow remote attackers to cause a denial of service (application hang) via a crafted Office document, aka "Microsoft Office Denial of Service Vulnerability."
nvd
CVE-2016-0012P4MEDIUMCVSS 4.3v2007v2010+2 more2016-01-13
CVE-2016-0012 [MEDIUM] CWE-200 CVE-2016-0012: Microsoft Office 2007 SP3, Excel 2007 SP3, PowerPoint 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Offic
Microsoft Office 2007 SP3, Excel 2007 SP3, PowerPoint 2007 SP3, Visio 2007 SP3, Word 2007 SP3, Office 2010 SP2, Excel 2010 SP2, PowerPoint 2010 SP2, Visio 2010 SP2, Word 2010 SP2, Office 2013 SP1, Excel 2013 SP1, PowerPoint 2013 SP1, Visio 2013 SP1, Word 2013 SP1, Excel 2013 RT SP1, PowerPoint 2013 RT SP1, Word 2013 RT SP1, Office 2016, Excel 2016, Po
nvd
CVE-2026-35440P4MEDIUMCVSS 5.5v20162026-05-12
CVE-2026-35440 [MEDIUM] CWE-552 CVE-2026-35440: Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized
Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
nvd