ACTIVELY EXPLOITED3 sources verified·1 min read
By Lyrie Threat Intelligence·6/8/2022
CVE-2009-0563 added to CISA KEV: Microsoft Office
Status: ✅ Confirmed exploited in the wild
Date added: 2022-06-08
Required action: Apply updates per vendor instructions.
Due date: 2022-06-22
Why this matters
Microsoft Office contains a buffer overflow vulnerability that allows remote attackers to execute code via a Word document with a crafted tag containing an invalid length field.
Sources
Lyrie Verdict
Lyrie's autonomous detection layer catches active exploitation primitives at machine speed — closing the gap between disclosure and weaponization that traditional defense simply can't cover.