Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
| Vendor | Product | Versions |
|---|---|---|
| microsoft | sharepoint_server | 16.0.0, 16.0.0, 16.0.0 |
Added new affected versions (16.0.5556.1005, 16.0.10417.20153, 16.0.19725.20384) with lower version thresholds, updated patch versions accordingly, and added tags indicating public PoC and active exploitation of CVE-2026-50522.
Updated exploitAvailable to true (public PoC released July 20) and added tags indicating machine key theft and IIS exploitation tactics observed in active attacks.
Updated exploitAvailable to true due to public PoC release and added tags indicating public exploit availability and Patch Tuesday context.
Updated description with new details and corrected exploit availability to false.
Initial creation