CVE-2026-40364
Severity CVSS v4.0:
Pending analysis
Type:
CWE-122
Heap-based Buffer Overflow
Publication date:
12/05/2026
Last modified:
13/05/2026
Description
Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally.
Impact
Base Score 3.x
8.40
Severity 3.x
HIGH



