Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC

A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per watchTowr.

The vulnerability in question is CVE-2026-50522 (CVSS score: 9.8), a critical deserialization of untrusted data in Microsoft Office SharePoint that could allow an unauthorized attacker to execute code over a network. Microsoft credited DEVCORE

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member’s iPhone

Pegasus Zero-Click Spyware Exploit Infects Serbian Student Movement Member’s iPhone The iPhone belonging to a member of Serbia’s student protest movement was infected with NSO Group’s Pegasus spyware, according to

AI Boosts Research Careers but Flattens Scientific Discovery

AI Boosts Research Careers but Flattens Scientific Discovery Source: Hacker News

1,741 “informed” consents with one click? GDPR complaint filed

1,741 “informed” consents with one click? GDPR complaint filed Source: Hacker News