| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.
Known vulnerabilities affecting Sharepoint products and systems
| CVE ID | Description | CVSS | Priority | Trend | Exploit | Patch |
|---|---|---|---|---|---|---|
| CVE-2026-58644 | Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network. | 9.8 |
| 999 |
| Neutral |
| Yes |
| Yes |
| CVE-2026-58277 | Improper authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. | 8.8 | 587 | Neutral | No | Yes |
| CVE-2026-56192 | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. | 5.5 | 211 | Neutral | No | Yes |
| CVE-2026-56164 | Missing authentication for critical function in Microsoft Office SharePoint allows an unauthorized attacker to elevate privileges over a network. | 9.8 | 999 | Neutral | Yes | Yes |
| CVE-2026-56157 | Improper access control in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. | 5.4 | 164 | Neutral | No | Yes |
| CVE-2026-55142 | Numeric truncation error in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | 5.5 | 125 | Neutral | No | Yes |
| CVE-2026-55135 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. | 5.4 | 223 | Neutral | No | Yes |
| CVE-2026-55134 | Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 7.8 | 431 | Neutral | No | Yes |
| CVE-2026-55132 | Double free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 7.8 | 431 | Neutral | No | Yes |
| CVE-2026-55130 | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 7.8 | 560 | Neutral | No | Yes |
| CVE-2026-55128 | Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 7.8 | 560 | Neutral | No | Yes |
| CVE-2026-55127 | Heap-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 7.8 | 431 | Neutral | No | Yes |
| CVE-2026-55126 | Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network. | 5.4 | 223 | Neutral | No | Yes |
| CVE-2026-55125 | Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. | 7.8 | 431 | Neutral | No | Yes |
| CVE-2026-55124 | Improper validation of specified type of input in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | 5.5 | 211 | Neutral | No | Yes |
| CVE-2026-55121 | Out-of-bounds read in Microsoft Office allows an unauthorized attacker to disclose information locally. | 5.5 | 211 | Neutral | No | Yes |
| CVE-2026-55055 | Stack-based buffer overflow in Microsoft Office Word allows an unauthorized attacker to execute code locally. | 7.8 | 431 | Neutral | No | Yes |
| CVE-2026-55052 | Missing authorization in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network. | 8.8 | 609 | Neutral | No | Yes |
| CVE-2026-55051 | Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network. | 6.5 | 338 | Neutral | No | Yes |
| CVE-2026-55050 | Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally. | 5.5 | 211 | Neutral | No | Yes |