CVE-2026-65665General(microsoft / sharepoint_server)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft sharepoint_server systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-502

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • sharepoint_server

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-08-11); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
sharepoint_server

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-08-11: 2Mentions · 2026-09-08: 1Patch / Workaround · 2026-08-11: 1Technical Details · 2026-08-11: 2Technical Details · 2026-09-08: 108-1109-08
Signal classification3 categories
General
133.3%
Patch
133.3%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-08-112
General1Patch1
2026-09-081
Disclosure1
Full discourse3 posts
  • tuo4n8@tuo4n8
    Disclosure

    - CVE-2026-65665, which I reported, was acknowledged by Microsoft. Thanks to @msftsecresponse for the verification. - Unauthenticated RCE on SharePoint 2019; post-auth RCE on SharePoint SE. - https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65665 #bugbounty #microsoft #sharepoint https://t.co/FTUOUf0D0C

    Post summary

    Microsoft has acknowledged CVE-2026-65665, an unauthenticated RCE in SharePoint 2019 and a post‑auth RCE in SharePoint SE, but no PoC, exploit code, or patch details are provided.

    16088154.4K
    950 followersView on X
  • Fabian Bader@fabian_bader
    General

    @UK_Daniel_Card SharePoint unauthenticated RCE (https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-63520) and authenticated RCE https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65665 will have a large surface

    Post summary

    The tweet links to two SharePoint RCE vulnerabilities (CVE‑2026‑63520 and CVE‑2026‑65665), mentioning their unauthenticated and authenticated RCE nature and noting a large surface area.

    10011289
    10.4K followersView on X
  • VulniPulse@vulnipulse
    Patch

    🚨 CRITICAL CVE ALERT CVE-2026-65665 · Microsoft SharePoint Server 2019 · CVSS 8.8 Attackers could execute arbitrary code. Upgrade to a vendor-listed fixed release. 🔎 Full advisory: https://vulnipulse.com/advisories/microsoft-cve-2026-65665 #CyberSecurity #CVE #Microsoft #MicrosoftSharePointServer2019

    Post summary

    The post highlights a critical Microsoft SharePoint Server 2019 vulnerability (CVE-2026-65665) with a CVSS of 8.8, advises users to upgrade to the vendor‑released fix, and provides basic technical details.

    1000042
    7 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appmicrosoftsharepoint_server---
Appmicrosoftsharepoint_server2019--

Explore more