Impact
The vulnerability is a use‑after‑free flaw in Microsoft Office Word that can be triggered by an authorized user to read memory contents that should not be exposed. Because it relies on a freed object that still contains data, an attacker who can control the execution path may access sensitive information that was stored in that memory region. The weakness is classified as CWE-416.
Affected Systems
Affected clients include Microsoft Windows 10 versions 1607, 1809, 21H2, 22H2; Windows 11 versions 23H2, 24H2, 25H2, 26H1; and Windows Server editions 2012, 2012 R2, 2016, 2019, 2022, 2025 (including Server Core installations). The vulnerability applies to the Office Word component installed on any of these operating systems.
Risk and Exploitability
The CVSS score of 5.5 indicates a medium severity. EPSS data is not available, and the vulnerability is not listed in the CISA KEV catalog. The attack vector is local, requiring the attacker to have authorized access to the machine or be able to run Word on the targeted system. While it does not enable remote code execution, the localized exposure of information can still support broader compromise efforts if the disclosed data is valuable to the attacker.
OpenCVE Enrichment