CISA announces that it adds a high-severity Microsoft SharePoint Server remote code execution vulnerability, CVE-2026-45659, to its Known Exploited Vulnerabilities (KEV) catalog. Multiple outlets report that CISA’s decision is based on evidence indicating active exploitation of the flaw. The vulnerability is described as an RCE condition involving the deserialization of untrusted data. Sources cite a CVSS score of 8.8 and note that Microsoft previously patched the issue in May. Bleeping Computer and SecurityWeek both state that threat actors are already exploiting the vulnerability in the wild, prompting the KEV update. The Register adds that exploitation requires access to a SharePoint account, and characterizes Microsoft’s earlier position as suggesting exploitation is less likely, while CISA’s KEV listing reflects its view that exploitation is occurring. Overall, the reporting aligns on the core points: the specific CVE, its RCE impact, its high severity rating, the May patch, and CISA’s determination that it is being actively exploited.
CISA adds Microsoft SharePoint RCE CVE-2026-45659 to KEV after evidence of active exploitation
CISA announces that it adds a high-severity Microsoft SharePoint Server remote code execution vulnerability, CVE-2026-45659, to its Known Exploited Vulnerabilities (KEV) catalog. Multiple outlets repo...
- CISA adds CVE-2026-45659, a Microsoft SharePoint Server remote code execution flaw, to its KEV catalog.
- CISA cites evidence that the vulnerability is actively exploited.
- The vulnerability involves remote code execution through deserialization of untrusted data.
- The flaw has a CVSS score of 8.8 and was patched by Microsoft in May.
- At least some reporting indicates exploitation requires a valid SharePoint account.
Attackers need little more than a valid SharePoint account to execute code on vulnerable on-prem servers
1 month agoCISA warned on Wednesday that attackers have begun exploiting a high-severity Microsoft SharePoint remote code execution vulnerability patched in May. [...]
1 month agoCISA says threat actors are exploiting a recently patched SharePoint remote code execution vulnerability (CVE-2026-45659). The post CISA Warns of Actively Exploited Microsoft SharePoint Vulnerability appeared first on SecurityWeek.
1 month agoThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a high-severity flaw impacting Microsoft SharePoint Server to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerability, tracked as CVE-2026-45659 (CVSS score: 8.8), is a case of remote code execution arising from the deserialization of untrusted data. The issue
1 month ago
Spiritual seekers increasingly use chatbots for guidance from AI and online gurus
People seeking spiritual guidance increasingly turn to chatbots that generate answers to questions about spirituality. A...
Nvidia pauses revenue-sharing deals with AI cloud companies, reported by WSJ
Nvidia is pausing revenue-sharing deals with AI cloud companies, according to The Wall Street Journal. The change occurs...
Nylastex Tooling bosses face court over worker’s death in Adelaide workplace case
Bosses from Nylastex Tooling appear in court in Adelaide over the death of a worker, in a case that is described as land...