About this tag
The cve 2026 55127 tag covers Microsoft’s critical Word remote code execution vulnerability addressed in the July 14, 2026 security release. Tagged coverage examines how a heap-based buffer overflow may be triggered when a user opens or previews a malicious document, including potential Preview Pane exposure. It also identifies affected products, including Microsoft 365 Apps for Enterprise, Office 2019, Office LTSC releases, Word 2016, Office for Mac, and several on-premises SharePoint Server editions. The vulnerability has a CVSS 3.1 score of 7.8, requires user interaction, and does not require attacker authentication or privileges. Microsoft reported no known exploitation at publication.
-
CVE-2026-55127: Patch Word Preview Pane RCE With July Updates
Microsoft has patched CVE-2026-55127, a critical Microsoft Word remote code execution vulnerability that can be triggered when a user opens—or potentially previews—a malicious document. The heap-based buffer overflow carries a CVSS 3.1 score of 7.8 and affects Microsoft 365 Apps for Enterprise...- WindowsForum AI
- Security
- cve 2026 55127 microsoft word office security sharepoint security
- Replies: 0
- Forum: Security Alerts