Microsoft Word vulnerabilities
265 known vulnerabilities affecting microsoft/word.
Total CVEs
265
CISA KEV
10
actively exploited
Public exploits
20
Exploited in wild
18
Severity breakdown
CRITICAL79HIGH142MEDIUM42LOW2
Vulnerabilities
Page 8 of 14
CVE-2015-2379P3CRITICALCVSS 9.3v2007v20132015-07-14
CVE-2015-2379 [CRITICAL] CWE-119 CVE-2015-2379: Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office for
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office for Mac 2011, and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
nvd
CVE-2010-1903P3CRITICALCVSS 9.3v2002v20032010-08-11
CVE-2010-1903 [CRITICAL] CWE-94 CVE-2010-1903: Microsoft Office Word 2002 SP3 and 2003 SP3, and Office Word Viewer, allows remote attackers to exec
Microsoft Office Word 2002 SP3 and 2003 SP3, and Office Word Viewer, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a malformed record in a Word file, aka "Word HTML Linked Objects Memory Corruption Vulnerability."
nvd
CVE-2017-11854P3HIGHCVSS 8.8v2007v20102017-11-15
CVE-2017-11854 [HIGH] CWE-119 CVE-2017-11854: Microsoft Word 2007 Service Pack 3, Microsoft Word 2010 Service Pack 2, Microsoft Office 2010 Servic
Microsoft Word 2007 Service Pack 3, Microsoft Word 2010 Service Pack 2, Microsoft Office 2010 Service Pack 2, and Microsoft Office Compatibility Pack Service Pack 3 allow an attacker to run arbitrary code in the context of the current user by failing to properly handle objects in memory, aka "Microsoft Word Memory Corruption Vulnerability".
nvd
CVE-2016-0056P3HIGHCVSS 7.8v2007v2010+2 more2016-02-10
CVE-2016-0056 [HIGH] CWE-119 CVE-2016-0056: Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016,
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
nvd
CVE-2024-41165P3CRITICALCVSS 9.1v16.83v16.83 for macOS2024-12-18
CVE-2024-41165 [CRITICAL] CWE-347 CVE-2024-41165: A library injection vulnerability exists in Microsoft Word 16.83 for macOS. A specially crafted libr
A library injection vulnerability exists in Microsoft Word 16.83 for macOS. A specially crafted library can leverage Word's access privileges, leading to a permission bypass. A malicious application could inject a library and start the program to trigger this vulnerability and then make use of the vulnerable application's permissions.
nvd
CVE-2018-8573P3HIGHCVSS 7.8v2010-sp2v2013-sp1+1 more2018-11-14
CVE-2018-8573 [HIGH] CVE-2018-8573: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka "Microsoft Word Remote Code Execution Vulnerability." This affects Microsoft Word, Office 365 ProPlus, Microsoft Office. This CVE ID is unique from CVE-2018-8539.
nvd
CVE-2020-1218P3HIGHCVSS 8.8v2010v2013+1 more2020-09-11
CVE-2020-1218 [HIGH] CVE-2020-1218: <p>A remote code execution vulnerability exists in Microsoft Word software when it fails to properly
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user. For example, the file could then take actions on behalf of the logged-on user with
nvd
CVE-2017-0053P3HIGHCVSS 7.8v2007v2010+2 more2017-03-17
CVE-2017-0053 [HIGH] CVE-2017-0053: Microsoft Office 2010 SP2, Office Compatibility Pack SP3, Word 2007 SP3, Word 2010 SP2, Word 2013 SP
Microsoft Office 2010 SP2, Office Compatibility Pack SP3, Word 2007 SP3, Word 2010 SP2, Word 2013 SP1, Word 2013 R2 SP1, Word 2016, and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability." This vulnerability is different from
nvd
CVE-2017-0281P3HIGHCVSS 7.8v20162017-05-12
CVE-2017-0281 [HIGH] CVE-2017-0281: Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2016, Office Online Server 2016,
Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2016, Office Online Server 2016, Office Web Apps 2010 SP2,Office Web Apps 2013 SP1, Project Server 2013 SP1, SharePoint Enterprise Server 2013 SP1, SharePoint Enterprise Server 2016, SharePoint Foundation 2013 SP1, Sharepoint Server 2010 SP2, Word 2016, and Skype for Business 2016 allow a remot
nvd
CVE-2026-21511P3HIGHCVSS 7.5v20162026-02-10
CVE-2026-21511 [HIGH] CWE-502 CVE-2026-21511: Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to per
Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
nvd
CVE-2016-0025P3HIGHCVSS 7.3v2007v2010+2 more2016-06-16
CVE-2016-0025 [HIGH] CWE-20 CVE-2016-0025: Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office 201
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Office 2016, Word 2016, Word for Mac 2011, Word 2016 for Mac, Office Compatibility Pack SP3, Word Automation Services on SharePoint Server 2010 SP2, Word Automation Services on SharePoint Server 2013 SP1, Office Web Apps 2010 SP2, Office Web Apps Server 2013 SP1, an
nvd
CVE-2026-40366P3HIGHCVSS 8.4v20162026-05-12
CVE-2026-40366 [HIGH] CWE-416 CVE-2026-40366: Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an una
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2026-40367P3HIGHCVSS 8.4v20162026-05-12
CVE-2026-40367 [HIGH] CWE-822 CVE-2026-40367: Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an una
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2020-16933P3HIGHCVSS 8.8v2010v2013+1 more2020-10-16
CVE-2020-16933 [HIGH] CVE-2020-16933: <p>A security feature bypass vulnerability exists in Microsoft Word software when it fails to proper
A security feature bypass vulnerability exists in Microsoft Word software when it fails to properly handle .LNK files. An attacker who successfully exploited the vulnerability could use a specially crafted file to perform actions in the security context of the current user. For example, the file could then take actions on behalf of the logged-on user with the
nvd
CVE-2017-0019P3HIGHCVSS 7.8v20162017-03-17
CVE-2017-0019 [HIGH] CVE-2017-0019: Microsoft Word 2016 allows remote attackers to execute arbitrary code or cause a denial of service (
Microsoft Word 2016 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability." This vulnerability is different from those described in CVE-2017-0006, CVE-2017-0020, CVE-2017-0030, CVE-2017-0031, CVE-2017-0052, and CVE-2017-0053.
nvd
CVE-2006-4693P3CRITICALCVSS 9.3v20042006-10-10
CVE-2006-4693 [CRITICAL] CVE-2006-4693: Unspecified vulnerability in Microsoft Word 2004 for Mac and v.X for Mac allows remote user-assisted
Unspecified vulnerability in Microsoft Word 2004 for Mac and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string in a Word file, a different issue than CVE-2006-3647 and CVE-2006-3651.
nvd
CVE-2025-62562P3HIGHCVSS 7.8v20162025-12-09
CVE-2025-62562 [HIGH] CWE-416 CVE-2025-62562: Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code locally.
Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code locally.
nvd
CVE-2020-0980P3HIGHCVSS 7.8v2010v2013+1 more2020-04-15
CVE-2020-0980 [HIGH] CVE-2020-0980: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'.
nvd
CVE-2025-53733P3HIGHCVSS 8.4v20162025-08-12
CVE-2025-53733 [HIGH] CWE-681 CVE-2025-53733: Incorrect conversion between numeric types in Microsoft Office Word allows an unauthorized attacker
Incorrect conversion between numeric types in Microsoft Office Word allows an unauthorized attacker to execute code locally.
nvd
CVE-2019-0953P3HIGHCVSS 7.8v20162019-05-16
CVE-2019-0953 [HIGH] CVE-2019-0953: A remote code execution vulnerability exists in Microsoft Word software when it fails to properly ha
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'.
nvd