PoC Released for Critical Microsoft Word RCE Bug

There is no indication that this attack is being carried out in the wild. Microsoft has addressed the issue with a patch but warned that there are other workarounds if needed. For anyone that cannot apply the fix for some reason, Microsoft recommends reading all emails in plain text. Another workaround is to enable the Microsoft Office File Block Policy, which prevents Office apps from opening RTF documents from unknown origins. To do this, the administrator must modify the Windows Registry. This last change must be done carefully as with any changes in Windows Registry; if done incorrectly, a Registry change could completely crash a machine.

https://www.bleepingcomputer.com/news/security/proof-of-concept-released-for-critical-microsoft-word-rce-bug/