THREAT OPS › CVEs › CVE-2026-45659
CVE-2026-45659 — Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability
Microsoft SharePoint Server contains a deserialization of untrusted data vulnerability which allows an authorized attacker to execute code over a network.
Vulnerability details
- Affected productsSharePoint Server
- KEV remediation due2026-07-04
Related reporting
- July 2026 CVE Landscaperecordedfuture
- CVE-2026-32201, CVE-2026-45659, CVE-2026-56164: Frequently Asked Questions About Active Exploitation of Microsoft SharePoint Server Vulnerabilitiestenable
- 2026-009: Critical Vulnerabilities in Microsoft SharePointcert_eu
- [CISA KEV] CVE-2026-45659 — Microsoft SharePoint Server: Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerabilitycisa_kev