CVE-2026-55040

exploited in the wild☆ pin
CVSS
9.1
Reports
14
First seen
Jul 14, 2026
Last seen
Aug 27, 2026
Affected product

Microsoft SharePoint

Associated actors

Recent reports

High

ThreatsDay: Weekly threat digest – 296K IoT botnet, water systems targeted, SharePoint RCE, 27+ threats

The Hacker News
Critical

Hackers target Microsoft SharePoint RCE chain with PoC exploit

Bleeping Computer
Critical

Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation

The Hacker News
High

CISA Adds Four Known Exploited Vulnerabilities to Catalog

CISA Advisories
High

Attackers Exploit SharePoint Authentication Bypass Following Public PoC Release

The Hacker News
High

Hackers leverage new Microsoft SharePoint exploit in attacks

Bleeping Computer
Critical

Microsoft Patches 398 Flaws Including Windows Driver Zero-Day Under Active Attack

The Hacker News
Critical

Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE

The Hacker News
Critical

Critical vulnerabilities in Microsoft SharePoint Server – CVE-2026-56164, CVE-2026-55040, CVE-2026-58644

Canadian Centre Alerts
High

Microsoft releases record 622 patches in July; two SharePoint and AD flaws exploited in wild

The Record (Recorded Future News)
High

Researcher Releases Windows Zero-Day PoC After Microsoft Patch Tuesday; SharePoint Flaws Actively Exploited

The Hacker News
Critical

CISA warns admins to patch actively exploited SharePoint flaws

Bleeping Computer
High

Microsoft Patches Record 622 Flaws in July; Two Zero-Days Under Active Attack

The Hacker News
Critical

Microsoft July 2026 Patch Tuesday fixes 570 flaws, including 3 zero-days

Bleeping Computer

This page shows data on a 7-day delay. Free accounts get the full delayed feed; real-time reports, indicators, and the API start at $29/mo.