CVE-2026-50522
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability
Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines. Deadline for federal agencies: 2026-07-25.
9 articles across 6 outlets · first covered Jul 14, 2026 · latest Jul 27, 2026
Coverage timeline
-
UK firms must patch now as CISA flags six active exploitssecurityonline.info · Jul 27, 2026
-
U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalogsecurityaffairs.com · Jul 23, 2026
-
Two Active BIND Exploits Highlighted as Nine Flaws Patchedsecurityonline.info · Jul 23, 2026
-
GitHub Actions Abused to Steal Credentials from PHP Packagessecurityonline.info · Jul 23, 2026
-
CISA Flags CVE-2026-50522 in KEV, Warns of SharePoint RCE Riskwww.cisa.gov · Jul 22, 2026
-
CISA Adds CVE-2026-50522 to Known Exploited Vulnerabilities Cataloguecisa.gov · Jul 22, 2026
-
Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attackswww.securityweek.com · Jul 22, 2026
-
CVE-2026-50522: SharePoint Flaw Lets Site Owners Run Remote Codesecurityaffairs.com · Jul 21, 2026
-
SharePoint flaw CVE-2026-50522 under active attack after PoC leakthehackernews.com · Jul 21, 2026