Skip to main content

CVE-2026-63530

Microsoft Office Word Information Disclosure vulnerability

Microsoft

MSRC advisory August 11, 2026

Alert details

Source feed
Microsoft MSRC
CVE ID
CVE-2026-63530
Affected products
Microsoft Office Word Information Disclosure · Microsoft Microsoft Office Word Information Disclosure · Microsoft

What happened

Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.

What it means for your business

Microsoft Office Word Information Disclosure vulnerability (CVE-2026-63530) was added to Microsoft’s security update guidance. Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. If you need help checking exposure, call (864) 335-9223.

Sources

Related briefs

Microsoft MSRC

CVE-2026-83951

Microsoft Office Word Information Disclosure vulnerability

Microsoft Office Word Information Disclosure vulnerability (CVE-2026-83951) was added to Microsoft’s security update guidance. <p>Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-83949

Microsoft Office Word Information Disclosure vulnerability

Microsoft Office Word Information Disclosure vulnerability (CVE-2026-83949) was added to Microsoft’s security update guidance. <p>Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.</p> If you need help checking exposure, call (864) 335-9223.

Microsoft MSRC

CVE-2026-85892

Microsoft Edge (Chromium-based) Elevation of Privilege vulnerability

Microsoft Edge (Chromium-based) Elevation of Privilege vulnerability (CVE-2026-85892) was added to Microsoft’s security update guidance. <p>Concurrent execution using shared resource with improper synchronization ('race condition') in Microsoft Edge (Chromium-based) allows an authorized attacker to elevate privileges locally.</p> If you need help checking exposure, call (864) 335-9223.

CriticalMicrosoft MSRC

CVE-2026-84352

Use after free in WebGL in Microsoft Edge vulnerability

Use after free in WebGL in Microsoft Edge vulnerability (CVE-2026-84352) was added to Microsoft’s security update guidance. This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/2026) for more information. If you need help checking exposure, call (864) 335-9223.

Need help patching?

PremierePC monitors KEV alerts for managed clients and helps teams prioritize remediation before attackers do.