logo

Microsoft SharePoint Has a New RCE Flaw. If You Haven’t Patched Yet, Go Do That.

ID: a5ad0cc6-b605-5aa6-bc34-4fd3f52c77bc

STIX ID: report--a5ad0cc6-b605-5aa6-bc34-4fd3f52c77bc

Feed Name: Security Affairs

Threat Score
70/100

Date Published: 2026-05-27

Date Updated: 2026-05-27

Author: Pierluigi Paganini

...
...

**Microsoft SharePoint RCE (CVE-2026-45659)** — A critical deserialization vulnerability in Microsoft SharePoint (CVSS 8.8) can allow authenticated attackers with low-privilege (Site Member) accounts to achieve remote code execution; patches are available for SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016 and should be applied immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.