<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Word on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/word/</link><description>Recent content in Word on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Thu, 19 Jun 2025 14:00:00 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/word/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-45456: Microsoft Outlook &amp; Word RCE on macOS</title><link>https://zxcloudsecurity.co.uk/posts/cve-2026-45456-microsoft-outlook-word-rce-macos/</link><pubDate>Fri, 19 Jun 2026 14:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/cve-2026-45456-microsoft-outlook-word-rce-macos/</guid><description>Microsoft patches CVE-2026-45456, a remote code execution flaw in Outlook and Word for Mac. Learn what action cloud security teams need to take.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45456">Microsoft Security Response Center</a></p>
<hr>
<p>Microsoft has released security updates addressing a remote code execution vulnerability (CVE-2026-45456) affecting Microsoft Outlook and Word on macOS. Attackers exploiting this flaw could potentially execute arbitrary code on affected Mac systems running vulnerable versions of Microsoft Office. Only Mac users are affected; users of other Office platforms do not need to take action.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure any macOS endpoints in your organisation running Microsoft Outlook or Word are patched immediately via Microsoft AutoUpdate or your MDM solution. Validate patch compliance through your endpoint management tooling, particularly for remote or BYOD Mac users who may not receive updates promptly.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45456">CVE-2026-45456 Microsoft Outlook and Word Remote Code Execution Vulnerability</a></p>
]]></content:encoded></item><item><title>CVE-2026-45471: Microsoft Word RCE for Mac Fix</title><link>https://zxcloudsecurity.co.uk/posts/microsoft-word-remote-code-execution-cve-2026-45471-mac/</link><pubDate>Fri, 19 Jun 2026 14:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/microsoft-word-remote-code-execution-cve-2026-45471-mac/</guid><description>Microsoft patches CVE-2026-45471, a remote code execution flaw in Microsoft Word for Mac. Update Office for Mac now to stay protected.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45471">Microsoft Security Response Center</a></p>
<hr>
<p>A remote code execution vulnerability (CVE-2026-45471) has been identified in Microsoft Word, affecting Microsoft Office for Mac users. An attacker who successfully exploits this flaw could execute arbitrary code on a victim&rsquo;s machine. Microsoft has released security updates and only Mac users running affected Office software need to act.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure macOS endpoints running Microsoft Office are patched immediately via your MDM or endpoint management tooling; verify compliance through your vulnerability management platform and confirm no affected versions remain in your fleet, particularly on devices with access to cloud-hosted resources or sensitive data.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45471">CVE-2026-45471 Microsoft Word Remote Code Execution Vulnerability</a></p>
]]></content:encoded></item><item><title>CVE-2026-45643: Microsoft Word RCE Vulnerability for Mac</title><link>https://zxcloudsecurity.co.uk/posts/microsoft-word-remote-code-execution-cve-2026-45643-mac/</link><pubDate>Fri, 19 Jun 2026 14:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/microsoft-word-remote-code-execution-cve-2026-45643-mac/</guid><description>CVE-2026-45643 is a remote code execution flaw in Microsoft Word for Mac. Learn what&amp;#39;s affected and how to patch it quickly.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45643">Microsoft Security Response Center</a></p>
<hr>
<p>A remote code execution vulnerability (CVE-2026-45643) has been identified in Microsoft Word affecting Mac users running specific versions of Microsoft Office for Mac. An attacker exploiting this flaw could execute arbitrary code on a victim&rsquo;s machine, potentially leading to full system compromise. Only Mac users of affected Office versions need to act; other platforms are unaffected.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure your macOS endpoint management tooling (e.g. Intune, Jamf) has deployed the latest Microsoft Office for Mac update across all managed devices promptly. Verify compliance reporting confirms patched versions before considering the risk mitigated.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45643">CVE-2026-45643 Microsoft Word Remote Code Execution Vulnerability</a></p>
]]></content:encoded></item><item><title>CVE-2026-45466: Microsoft Word Info Disclosure on Mac</title><link>https://zxcloudsecurity.co.uk/posts/microsoft-word-information-disclosure-cve-2026-45466-mac/</link><pubDate>Fri, 19 Jun 2026 14:00:00 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/microsoft-word-information-disclosure-cve-2026-45466-mac/</guid><description>Microsoft has patched CVE-2026-45466, an information disclosure flaw in Microsoft Word for Mac. Update Office for Mac now to protect sensitive data.</description><content:encoded><![CDATA[<p>🟡 <strong>Medium</strong>  |  <strong>Source:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45466">Microsoft Security Response Center</a></p>
<hr>
<p>A security vulnerability in Microsoft Word for Mac (CVE-2026-45466) allows information disclosure, potentially exposing sensitive data from affected documents. Microsoft has released security updates for Microsoft Office for Mac to address the issue. Only users running the affected Mac versions of Office need to act; other platforms are unaffected.</p>
<blockquote>
<p><strong>Security Architect&rsquo;s Take:</strong> Ensure any managed Mac endpoints running Microsoft Office are updated promptly via your MDM solution or patch management tooling. Verify compliance reporting confirms the patch has been applied across your Mac fleet, particularly for users handling sensitive or confidential documents.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-45466">CVE-2026-45466 Microsoft Word Information Disclosure Vulnerability</a></p>
]]></content:encoded></item></channel></rss>