2026-009: Critical Vulnerabilities in Microsoft SharePoint
[UPDATED] On 14 July 2026, Microsoft released security updates addressing critical remote code execution (RCE) vulnerabilities in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified a proof-of-concept exploit code and subsequently observed active exploitation of CVE-2026-50522, a vulnerability part of an ongoing series of actively exploited flaws affecting on-premise SharePoint Server instances, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644. CERT-EU strongly recommends updating affected servers immediately, rotating credentials for any assets that may have been exposed to the internet, and conducting a compromise assessment.
More from CERT-EU
- 2026-012: Critical Vulnerabilities in Check Point Products
- 2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server
- 2026-010: Critical Vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway
The rest of this wire is for subscribers
Every release from this source, the moment it crosses — plus 80+ other newswires, saved searches and instant alerts.
7 days, no card required.
Read releases like this the second they cross the wire.
1,200+ — live on PPN World right now. Every release from this source, the moment it crosses — plus 80+ other newswires, saved searches and instant alerts.
Start the free trial →Your announcement next? Distribute your press release to the global wires with PPN Source — and track its pickup live here.
PPN Source →