logo

Microsoft Patch Tuesday follows SharePoint attacks, Exchange server warnings

ID: 5c11780b-9966-59c8-8dfe-c9bf689a44ee

STIX ID: report--5c11780b-9966-59c8-8dfe-c9bf689a44ee

Feed Name: CyberScoop

Threat Score
78/100

Date Published: 2025-08-12

Date Updated: 2026-04-21

Author: Matt Kapko

...
...

Microsoft’s August security update addresses 111 vulnerabilities across Exchange, SharePoint, Windows and Azure services, including multiple high‑severity and critical flaws (notably Exchange CVE-2025-53786, Azure OpenAI CVE-2025-53767, and RCEs in GDI+/Graphics). More than 28,000 on-premises Exchange servers remain unpatched, CISA issued an update deadline for federal agencies, and attackers actively exploited SharePoint zero-days to compromise over 400 organizations (including U.S. agencies), while some vulnerabilities have functional exploit code available — elevating the overall risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.