| Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. CVE-2026-80090 | Severity medium |
| Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-80085 | Severity high |
| Double free in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-80080 | Severity high |
| Use after free in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. CVE-2026-78525 | Severity high |
| Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-78521 | Severity high |
| Out-of-bounds read in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. CVE-2026-78520 | Severity medium |
| Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-78517 | Severity high |
| Use after free in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-78514 | Severity high |
| Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-78512 | Severity high |
| Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-78511 | Severity high |
| Heap-based buffer overflow in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network. CVE-2026-78509 | Severity critical |
| Improper null termination in Microsoft Office Word allows an unauthorized attacker to disclose information locally. CVE-2026-78506 | Severity medium |
| Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-78504 | Severity high |
| Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. CVE-2026-78503 | Severity medium |
| Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. CVE-2026-78502 | Severity medium |
| Null pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-77901 | Severity high |
| Out-of-bounds read in Microsoft Office Word allows an authorized attacker to disclose information locally. CVE-2026-72976 | Severity medium |
| Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-72973 | Severity high |
| Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-72972 | Severity high |
| Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-69759 | Severity high |
| Integer overflow or wraparound in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. CVE-2026-69734 | Severity medium |
| Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-69722 | Severity high |
| Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information over a network. CVE-2026-69719 | Severity medium |
| Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-69686 | Severity high |
| Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code over a network. CVE-2026-69671 | Severity high |
| Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. CVE-2025-62555 | Severity high |