Microsoft Office Word Remote Code Execution Vulnerability
CVE-2026-80080
Improper neutralization of special elements used in a command ('command injection') in Microsoft Office allows an authorized attacker to elevate privileges locally.
Click to Run
Review the complete instructions on the vendor's siteSecurityAlert records field-level changes from the point we begin following a bulletin. Earlier vendor changes may not have a field-by-field record.
The publication date reported by the vendor.
We collected the advisory from the official source.
Our collector saw this advisory during a later source check.