CVE-2026-41101
- EPSS 0.29%
- Veröffentlicht 12.05.2026 16:58:53
- Zuletzt bearbeitet 16.05.2026 02:09:54
Improper access control in Microsoft Office Word allows an authorized attacker to perform spoofing locally.
CVE-2026-40421
- EPSS 0.62%
- Veröffentlicht 12.05.2026 16:58:48
- Zuletzt bearbeitet 01.06.2026 19:16:39
Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-40364
- EPSS 4.42%
- Veröffentlicht 12.05.2026 16:58:38
- Zuletzt bearbeitet 19.05.2026 18:05:08
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-40366
- EPSS 0.38%
- Veröffentlicht 12.05.2026 16:58:38
- Zuletzt bearbeitet 01.06.2026 19:16:34
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2026-35440
- EPSS 0.45%
- Veröffentlicht 12.05.2026 16:58:36
- Zuletzt bearbeitet 19.05.2026 18:05:26
Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
CVE-2026-26133
- EPSS 0.43%
- Veröffentlicht 13.03.2026 21:10:13
- Zuletzt bearbeitet 09.04.2026 18:16:57
AI command injection in M365 Copilot allows an unauthorized attacker to disclose information over a network.
CVE-2026-21511
- EPSS 3.64%
- Veröffentlicht 10.02.2026 18:16:33
- Zuletzt bearbeitet 11.02.2026 18:56:56
Deserialization of untrusted data in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
CVE-2026-20948
- EPSS 0.55%
- Veröffentlicht 13.01.2026 17:57:06
- Zuletzt bearbeitet 16.01.2026 16:19:15
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-62558
- EPSS 0.62%
- Veröffentlicht 09.12.2025 17:55:59
- Zuletzt bearbeitet 10.12.2025 15:39:36
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
CVE-2025-62559
- EPSS 0.62%
- Veröffentlicht 09.12.2025 17:55:59
- Zuletzt bearbeitet 10.12.2025 15:38:54
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.