VendorsMicrosoftwordall versions
Vulnerabilities

Microsoft Word

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

320CVEs
CVE-2026-55130
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2026-55132
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2026-55128
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2026-55127
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2026-55038
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2026-55033
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2026-55055
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2026-55032
Microsoft Word Remote Code Execution Vulnerability
Published 2026-07-14 · Analyzed
7.8EPSS 0.006
CVE-2025-49698
Microsoft Word Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
7.8EPSS 0.006
CVE-2025-53738
Microsoft Word Remote Code Execution Vulnerability
Published 2025-08-12 · Analyzed
7.8EPSS 0.005
CVE-2026-64907
Microsoft Office Word Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2026-64905
Microsoft Office Word Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2025-59222
Microsoft Word Remote Code Execution Vulnerability
Published 2025-10-14 · Analyzed
7.8EPSS 0.005
CVE-2026-70311
Microsoft Office Word Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2026-44803
Windows Graphics Component Remote Code Execution Vulnerability
Published 2026-06-09 · Analyzed
7.8EPSS 0.005
CVE-2026-44812
Windows Graphics Component Remote Code Execution Vulnerability
Published 2026-06-09 · Analyzed
7.8EPSS 0.005
CVE-2026-63527
Microsoft Office Word Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2026-64915
Microsoft Office Word Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2026-63525
Microsoft Office Word Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2026-63518
Microsoft Office Word Remote Code Execution Vulnerability
Published 2026-08-11 · Analyzed
7.8EPSS 0.005
CVE-2025-49700
Microsoft Word Remote Code Execution Vulnerability
Published 2025-07-08 · Analyzed
7.8EPSS 0.004
CVE-2026-42832
Microsoft Office Spoofing Vulnerability
Published 2026-05-12 · Analyzed
7.7EPSS 0.003
CVE-2007-0870
Unspecified vulnerability in Microsoft Word 2000 allows remote attackers to cause a denial of service (crash) via unknown vectors, a different vulnerability than CVE-2006-5994, CVE-2006-6456, CVE-2006-6561, and CVE-2007-0515, a variant of Exploit-MS06-027.
Published 2007-02-11 · Modified
7.6EPSS 0.211
CVE-2004-0573
Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites 2001 through 2004 allows remote attackers to execute arbitrary code via a malicious document or website.
Published 2004-09-17 · Modified
7.5EPSS 0.423
CVE-2004-0848
Buffer overflow in Microsoft Office XP allows remote attackers to execute arbitrary code via a link with a URL file location containing long inputs after (1) "%00 (null byte) in .doc filenames or (2) "%0a" (carriage return) in .rtf filenames.
Published 2005-02-08 · Modified
7.5EPSS 0.275
CVE-2003-0820
Microsoft Word 97, 98(J), 2000, and 2002, and Microsoft Works Suites 2001 through 2004, do not properly check the length of the "Macro names" data value, which could allow remote attackers to execute arbitrary code via a buffer overflow attack.
Published 2003-11-18 · Modified
7.5EPSS 0.257
CVE-2005-0564
Stack-based buffer overflow in Microsoft Word 2000 and Word 2002, and Microsoft Works Suites 2000 through 2004, might allow remote attackers to execute arbitrary code via a .doc file with long font information.
Published 2005-07-12 · Modified
7.5EPSS 0.257
CVE-2000-0419
The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" function in Office Help, aka the "Office 2000 UA Control" vulnerability.
Published 2000-07-12 · Modified
7.5EPSS 0.214
CVE-2003-0821
Microsoft Excel 97, 2000, and 2002 allows remote attackers to execute arbitrary code via a spreadsheet with a malicious XLM (Excel 4) macro that bypasses the macro security model.
Published 2003-11-18 · Modified
7.5EPSS 0.190
CVE-2002-1056
Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email messages in HTML or Rich Text Format (RTF), which could allow remote attackers to execute arbitrary scripts via an email that the user forwards or replies to.
Published 2002-06-25 · Modified
7.5EPSS 0.185
CVE-2018-8310
A tampering vulnerability exists when Microsoft Outlook does not properly handle specific attachment types when rendering HTML emails, aka "Microsoft Office Tampering Vulnerability." This affects Microsoft Word, Microsoft Office.
Published 2018-07-11 · Modified
7.5EPSS 0.057
CVE-1999-0354
Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which doesn't warn the user that the template contains executable content. Also applies to Outlook when the client views a malicious email message.
Published 2000-02-04 · Modified
7.5EPSS 0.052
CVE-2003-0664
Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro security model and automatically execute arbitrary macros via a malicious document.
Published 2003-09-04 · Modified
7.5EPSS 0.041
CVE-2026-21511
Microsoft Outlook Spoofing Vulnerability
Published 2026-02-10 · Analyzed
7.5EPSS 0.038
CVE-2024-49033
Microsoft Word Security Feature Bypass Vulnerability
Published 2024-11-12 · Analyzed
7.5EPSS 0.021
CVE-2023-29335
Microsoft Word Security Feature Bypass Vulnerability
Published 2023-05-09 · Modified
7.5EPSS 0.012
CVE-2026-70105
Microsoft Word Information Disclosure Vulnerability
Published 2026-08-20 · Analyzed
7.5EPSS 0.010
CVE-2025-29816
Microsoft Word Security Feature Bypass Vulnerability
Published 2025-04-08 · Analyzed
7.5EPSS 0.005
CVE-2023-36762
Microsoft Word Remote Code Execution Vulnerability
Published 2023-09-12 · Modified
7.3EPSS 0.008
CVE-2001-0628
Microsoft Word 2000 does not check AutoRecovery (.asd) files for macros, which allows a local attacker to execute arbitrary macros with the user ID of the Word user.
Published 2002-03-09 · Modified
7.2EPSS 0.022
← Prev6 / 8Next →