CVE-2026-21514

Confirmed PUBLISHED

Microsoft Word Security Feature Bypass Vulnerability

Microsoft · Microsoft 365 Apps for Enterprise, Microsoft Office LTSC 2021, Microsoft Office LTSC 2024, Microsoft Office LTSC for Mac 2021, Microsoft Office LTSC for Mac 2024

1 day faster than CISA KEV

Exploited in the wild

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
Confirmed
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
In CISA KEV
CVSS / EPSS
7.8 High EPSS 1.5%

At a Glance

Reliance on untrusted inputs in a security decision in Microsoft Office Word allows an unauthorized attacker to bypass a security feature locally.

cisa microsoft
CVE Published
Feb 10, 2026
Exploitation Reported
Jun 01, 2026
CVSS
7.8 High
EPSS
1.5%
Low complexity Unauthenticated

Affected Versions

Vendor Product Version Status
Microsoft
Microsoft 365 Apps for Enterprise

16.0.1 to < https://aka.ms/OfficeSecurityReleases

Affected
Microsoft
Microsoft Office LTSC 2021

16.0.1 to < https://aka.ms/OfficeSecurityReleases

Affected
Microsoft
Microsoft Office LTSC 2024

16.0.0 to < https://aka.ms/OfficeSecurityReleases

Affected
Microsoft
Microsoft Office LTSC for Mac 2021

16.0.1 to < 16.106.26020821

Affected
Microsoft
Microsoft Office LTSC for Mac 2024

16.0.0 to < 16.106.26020821

Affected

CVE References

Recommended Actions

  • Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.
  • Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.