logo

Microsoft Issues Patches for SharePoint Zero-Day and 168 Other New Vulnerabilities

ID: 3e4c2be7-b96a-59c3-bc13-c86a6be07352

STIX ID: report--3e4c2be7-b96a-59c3-bc13-c86a6be07352

Feed Name: The Hacker News

Threat Score
78/100

Date Published: 2026-04-15

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Microsoft released updates addressing 169 vulnerabilities — including an actively exploited SharePoint spoofing zero-day (CVE-2026-32201), a publicly known Defender privilege-escalation bug (CVE-2026-33825), and a critical IKEv2 remote code execution flaw (CVE-2026-33824, CVSS 9.8). CISA has added the SharePoint flaw to its Known Exploited Vulnerabilities catalog and federal agencies are required to remediate, while experts warn internet-facing IKEv2 and VPN endpoints are particularly at risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.