CRITICALVulnerability
Global

Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC

·Source: The Hacker News

Updated:

Executive Summary

A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per watchTowr. The vulnerability in question is CVE-2026-50522 (CVSS score: 9.8), a critical deserialization of untrusted data in Microsoft Office SharePoint that could allow an unauthorized attacker to execute code over a network. Microsoft credited DEVCORE

Analysis

A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per watchTowr. The vulnerability in question is CVE-2026-50522 (CVSS score: 9.8), a critical deserialization of untrusted data in Microsoft Office SharePoint that could allow an unauthorized attacker to execute code over a network. Microsoft credited DEVCORE

Indicators of Compromise (1)

CVE (1)
CVE-2026-50522
Source Attribution

Originally published by The Hacker News on Jul 21, 2026.

Related Threats