M365 Change Tracker

← All changes · security · CVE-2026-56164

CVE-2026-56164ModerateImmediate

Microsoft SharePoint Server Elevation of Privilege Vulnerability

Severity Moderate  ·  Urgency Immediate  ·  Exploited in the wild

Why it matters: Exploited in the wild — CISA fix-by 2026-07-17

Remediate by Jul 17, 2026 · passed 38d ago

Elevation of Privilege · Moderate · CVSS 5.3 · Exploited in the wild. Affects: SharePoint Server.

CVSS 5.3EPSS 22.4%Exploited in the wildCISA remediation due 2026-07-17 (passed 38d ago)Security update published 2026-08-21Applies to On-premisesKB5002891NVDCISA KEV

Affected: SharePoint Server

Related changes

View at Microsoft →