Microsoft releases May updates to fix high-risk SharePoint vulnerability (heise.de)
0xBASE INTEL BRIEF
- CVE-2026-45659 (CVSS 8.8) enables remote code execution via deserialization.
- Affects SharePoint Server 2016, 2019, and Subscription Edition.
- Patch was included in May Patch Tuesday; CVE entry published later.
"Microsoft released security updates for SharePoint Server to address a high-risk vulnerability (CVE-2026-45659) that allows remote code execution through deserialization of untrusted data. The flaw requires authentication and has a CVSS score of 8.8. The updates were included in the May Patch Tuesday but the CVE entry was published later. Admins should verify installation."
no comments yet.