Home / Jul 24, 2026 / Story
0
#7 SecurityWeek general July 22, 2026 at 11:29 UTC

Fourth SharePoint Vulnerability Exploited in Past Month’s Wave of Attacks

By Eduard Kovacs

AI Summary

CVE-2026-50522, the fourth SharePoint vulnerability to be actively exploited in roughly one month, is being leveraged by threat actors to steal machine keys and maintain long-term persistent access to targeted environments. The sustained wave of SharePoint exploitation suggests coordinated or opportunistic campaigns systematically targeting the platform, making unpatched SharePoint servers an acute risk. Organizations should audit SharePoint deployments and validate that all recent patches are applied.

Relevance score: 78.0/100

# More from July 24