Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Sharepoint Server
Total 604 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-70326 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-70324 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-70321 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-66808 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-66805 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-63520 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.1 HIGH
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
CVE-2026-64921 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Missing authentication for critical function in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-64922 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 4.6 MEDIUM
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-65658 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-65665 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-65663 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-64916 1 Microsoft 1 Sharepoint Server 2026-08-13 N/A 4.6 MEDIUM
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-58639 1 Microsoft 1 Sharepoint Server 2026-08-12 N/A 6.5 MEDIUM
Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-63516 1 Microsoft 1 Sharepoint Server 2026-08-12 N/A 6.5 MEDIUM
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-63512 1 Microsoft 1 Sharepoint Server 2026-08-12 N/A 6.5 MEDIUM
Incorrect authorization in Microsoft Office SharePoint allows an authorized attacker to perform tampering over a network.
CVE-2026-63514 1 Microsoft 1 Sharepoint Server 2026-08-12 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-62827 1 Microsoft 1 Sharepoint Server 2026-08-12 N/A 8.8 HIGH
Improper authentication in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.
CVE-2026-64901 1 Microsoft 1 Sharepoint Server 2026-08-12 N/A 8.8 HIGH
Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.
CVE-2026-57105 1 Microsoft 1 Sharepoint Server 2026-08-12 N/A 8.0 HIGH
Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.
CVE-2026-62837 1 Microsoft 1 Sharepoint Server 2026-08-11 N/A 6.5 MEDIUM
Relative path traversal in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.