office remote code execution

  1. CVE-2026-40364 Word Critical RCE: Preview Pane Attack Vector & Patch Guidance

    CVE-2026-40364 is a critical Microsoft Word remote code execution vulnerability disclosed by Microsoft on May 12, 2026, affecting supported Microsoft Word, Office, Microsoft 365 Apps, and Office LTSC editions on Windows and Mac. Microsoft says an unauthorized attacker can exploit a...