CVE-2026-78502 Advisory
Severity: MEDIUM (CVSS 6.5)
Affected Product:
- Microsoft Defender Business
Vulnerability: Out-of-bounds read in Microsoft Office Word allows unauthorized information disclosure over a network.
KEV Status: Not currently exploited in the wild.
Remediation: Apply available security updates from Microsoft. Refer to the official advisory at https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-78502 for patch availability and deployment guidance.