logo

Microsoft SharePoint Server 0-Day Vulnerability Actively Exploited in Attacks

ID: e3f24d9c-f9f4-5a51-9840-d4f349be78bf

STIX ID: report--e3f24d9c-f9f4-5a51-9840-d4f349be78bf

Feed Name: cybersecurityNews.com

Threat Score
85/100

Date Published: 2026-04-15

Date Updated: 2026-04-21

Author: Guru Baran

...
...

Microsoft confirmed CVE-2026-32201, a zero-day spoofing vulnerability in SharePoint Server that is actively exploited in the wild. The flaw allows unauthenticated network-based spoofing with low attack complexity; Microsoft released emergency patches for Subscription Edition, 2019, and 2016 on April 14, 2026, and advises immediate patching, log audits, restricting external exposure, and monitoring for IOCs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.