Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Word
(Microsoft)| Repositories |
Unknown: This might be proprietary software. |
| #Vulnerabilities | 234 |
| Date | Id | Summary | Products | Score | Patch | Annotated |
|---|---|---|---|---|---|---|
| 2025-08-12 | CVE-2025-53733 | Incorrect conversion between numeric types in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Sharepoint_enterprise_server, Sharepoint_server, Word | 8.4 | ||
| 2025-08-12 | CVE-2025-53736 | Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | 365_apps, Office, Office_long_term_servicing_channel, Sharepoint_enterprise_server, Sharepoint_server, Word | 6.2 | ||
| 2025-08-12 | CVE-2025-53738 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Word | 7.8 | ||
| 2025-07-08 | CVE-2025-49703 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Sharepoint_server, Word | N/A | ||
| 2025-07-08 | CVE-2025-49698 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Word | 7.8 | ||
| 2025-07-08 | CVE-2025-49699 | Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Outlook, Powerpoint, Word | 7.0 | ||
| 2025-07-08 | CVE-2025-49700 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Word | N/A | ||
| 2025-04-08 | CVE-2025-27747 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Sharepoint_enterprise_server, Sharepoint_server, Word | N/A | ||
| 2025-04-08 | CVE-2025-27747 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 365_apps, Office, Office_long_term_servicing_channel, Sharepoint_enterprise_server, Sharepoint_server, Word | N/A | ||
| 2025-04-08 | CVE-2025-29816 | Improper input validation in Microsoft Office Word allows an unauthorized attacker to bypass a security feature over a network. | 365_apps, Office, Office_long_term_servicing_channel, Word | N/A |