CVE-2026-45458 Microsoft Outlook and Word Remote Code Execution Vulnerability Access of resource using incompatible type ('type confusion') in Microsoft Office allows an unauthorized attacker to execute code locally. EPSS 0.00 CVE-2026-45458 Microsoft US Microsoft Security · 9. 6. 16:00