← Back

CVE-2026-55124

nvd nist
Published: Jul 14, 2026Modified: Jul 16, 2026

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Exploitability: 1.8 / Impact: 3.6
Source: secure@microsoft.com (Secondary)

Description

Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

Affected (17)

8 products
365 Apps
Microsoft 365
Office 2019
Office 2021
Office 2024
Office Online Server
Sharepoint Server
Word
Configuration A
17 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions
Microsoft
All versions
All versions
All versions
Microsoft
All versions
All versions
All versions
Before 16.0.10417.20175
Microsoft
Before 16.0.19725.20434
Version 2016
Version 2019
Microsoft
Version 2016
Version 2016

References (1)

Source: secure@microsoft.com
Vendor AdvisoryPatch

Timeline

No history available yet.