logo

Critical Microsoft SharePoint flaw now exploited in attacks

ID: c27456b1-e014-5c62-b199-25897cede333

STIX ID: report--c27456b1-e014-5c62-b199-25897cede333

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2026-03-19

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

CISA warns that a critical SharePoint vulnerability (CVE-2026-20963), patched by Microsoft in January, is being exploited in the wild and can allow unauthenticated remote code execution via deserialization on unpatched SharePoint Server instances; CISA has added the flaw to its catalog of actively exploited vulnerabilities and ordered federal civilian agencies to remediate, while also flagging an actively exploited stored XSS in Zimbra.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.