Tenable One telemetry shows nearly 14 million vulnerable assets across seven Tier‑1 countries; the count is a lower‑bound estimate. CVE-2026-21514 Known exploited · CISA KEV CVSS 7.8 HIGH: reliance on untrusted inputs in a security decision in Microsoft Office Word allows an unauthorized attacker to… EPSS 2% (73rd percentile). Microsoft patch: Click to Run. CISA federal remediation date Mar 3 · date passed Timeline Mar 17 Reported by Tenable Mar 3 CISA federal deadline for CVE-2026-21514 passed Feb 10 CVE-2026-21514 added to CISA KEV