Known Vulnerabilities for Word For Mac by Microsoft
Listed below are 10 of the newest known vulnerabilities associated with "Word For Mac" by "Microsoft".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-40935 json | WWBN AVideo is an open source video platform. In versions 29.0 and prior, `objects/getCaptcha.php` accepts the CAPTCHA length... | Not Provided | 2026-04-21 | 2026-04-22 |
| CVE-2026-40200 json | An issue was discovered in musl libc 0.7.10 through 1.2.6. Stack-based memory corruption can occur during qsort of very large... | Not Provided | 2026-04-10 | 2026-04-10 |
| CVE-2026-33822 json | Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-33115 json | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-33114 json | Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-33095 json | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-23657 json | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | Not Provided | 2026-04-14 | 2026-04-16 |
| CVE-2026-1389 json | The Document Embedder – Embed PDFs, Word, Excel, and Other Files plugin for WordPress is vulnerable to Insecure Direct Obje... | Not Provided | 2026-01-28 | 2026-04-08 |
| CVE-2025-71281 json | XenForo before 2.3.7 does not properly restrict methods callable from within templates. A loose prefix match was used instead... | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2025-70129 json | If the anti spam-captcha functionality in PluXml versions 5.8.22 and earlier is enabled, a captcha challenge is generated wit... | Not Provided | 2026-03-10 | 2026-03-11 |