logo

2026-004: Critical Vulnerability in SharePoint Exploited

ID: 37195ab5-15bf-59b5-8b6c-20bb025529db

STIX ID: report--37195ab5-15bf-59b5-8b6c-20bb025529db

Feed Name: CERT-EU Security Advisories

Threat Score
80/100

Date Published: 2026-03-25

Date Updated: 2026-04-19

...
...

CERT-EU reports that Microsoft updated a January 2026 advisory to raise the severity of CVE-2026-20963 — an unauthenticated deserialization remote code execution vulnerability in Microsoft SharePoint (CVSS 9.8) — and that the issue was added to CISA's Known Exploited Vulnerabilities catalogue on 18 March 2026; CERT-EU urges immediate patching of affected SharePoint Server editions (prioritise internet-facing assets), enabling AMSI, deploying EDR, rotating ASP.NET machine keys and performing compromise assessments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.