THREAT OPS › CVEs › CVE-2026-32201
CVE-2026-32201 — Microsoft SharePoint Server Improper Input Validation Vulnerability
Microsoft SharePoint Server contains an improper input validation vulnerability that allows an unauthorized attacker to perform spoofing over a network.
Vulnerability details
- Affected productsSharePoint Server
- KEV remediation due2026-04-28
Exploiting threat actors
- Earth LuscaG1006
Related reporting
- CVE-2026-32201, CVE-2026-45659, CVE-2026-56164: Frequently Asked Questions About Active Exploitation of Microsoft SharePoint Server Vulnerabilitiestenable
- The April 2026 Security Update Reviewzdi_blog
- 2026-009: Critical Vulnerabilities in Microsoft SharePointcert_eu
- April 2026 CVE Landscaperecordedfuture