outlook_2016 vulnerabilities
CVEs whose affected-version data names the outlook_2016 package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2026-70329High· 8.8Microsoft Outlook Remote Code Execution Vulnerability
Integer overflow or wraparound in Microsoft Office Outlook allows an unauthorized attacker to execute code over a network.
▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.67%via CVEORG
CVE-2026-63518High· 7.8Microsoft Office Word Remote Code Execution Vulnerability
Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally.
▾ TwilightMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.35%via CVEORG
CVE-2026-62882Medium· 4.3Microsoft Outlook Spoofing Vulnerability
Insufficiently protected credentials in Microsoft Office Outlook allows an unauthorized attacker to perform spoofing over a network.
▾ SunlitMicrosoft · Microsoft 365 Apps for EnterpriseEPSS 0.62%via CVEORG