THREATOPS
THREAT OPSCVEs › CVE-2026-56164

CVE-2026-56164 — Microsoft SharePoint Server Missing Authentication for Critical Function Vulnerability

CISA KEVExploited: confirmedMicrosoft

Microsoft SharePoint contains a missing authentication for critical function vulnerability that allows an unauthorized attacker to elevate privileges over a network.

Vulnerability details

Exploiting threat actors

Related reporting