CVE-2026-50522
exploitation · critical · Evidence score 90
- Vendor
- Microsoft
- Affected software
- Microsoft SharePoint
- Exploitation signal
- Listed in CISA Known Exploited Vulnerabilities
- EPSS
- 0.76981
Microsoft SharePoint contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a network.
Provenance
CISA Known Exploited Vulnerabilities
22 July 2026, 10:00 AM AEST