By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Microsoft patches high-risk SharePoint vulnerability | heise online
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Software > Microsoft patches high-risk SharePoint vulnerability | heise online
Software

Microsoft patches high-risk SharePoint vulnerability | heise online

News Room
Last updated: 2026/05/28 at 1:55 AM
News Room Published 28 May 2026
Share
Microsoft patches high-risk SharePoint vulnerability | heise online
SHARE

Admins who run Microsoft SharePoint servers in their infrastructure should check whether they have installed the May updates. Microsoft is thus closing a security gap that is classified as high risk and allows attackers to inject and execute malicious code.

Read more after the ad

Microsoft warns of the security hole in a CVE vulnerability entry. The problem arises due to the deserialization of untrustworthy data, i.e. unpacking and processing or even executing it. This allows attackers who are logged in to SharePoint to smuggle in code via the network (CVE-2026-45659, CVSS 8.8Risk „hoch“). No elevated rights are necessary. The update is available for SharePoint Server 2016, SharePoint Enterprise Server 2016, SharePoint Server 2019 and the Subscription Edition.

Microsoft further states that the vulnerability can be attacked from the Internet. Since attackers do not need detailed knowledge of vulnerable systems in advance in order to successfully attack them, the developers consider an attack to be less complex. Nevertheless, they estimate that abuse of this vulnerability is less likely. Microsoft also states that the security vulnerability has not yet been attacked.

Confusion about security vulnerability

Microsoft only published the information about the vulnerability on Wednesday night. However, this is not an emergency update, but rather a “forgotten” vulnerability entry. The update from the May patch day already addresses the vulnerability.

Since SharePoint vulnerabilities are of great interest to cybercriminals and are more commonly exploited in the wild, IT managers should ensure that they have applied the update. In mid-April, Microsoft released updates for SharePoint on Patch Tuesday after a security hole in it had already been attacked.


(dmk)



Unfortunately, this link is no longer valid.

Links to gifted items will be invalid if they are older than 7 days or have been accessed too often.


You need a heise+ package to read this article. Try it now for a week without obligation – without obligation!

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article E-invoicing requirement: Why companies need to act now E-invoicing requirement: Why companies need to act now
Next Article In 1967 a war closed the Suez Canal for eight years. Half a century later, the Strait of Hormuz looks into the same abyss In 1967 a war closed the Suez Canal for eight years. Half a century later, the Strait of Hormuz looks into the same abyss
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

4 Key Disruptions In The Fintech World
Blog
Black Banx H1 2026 Results: Scale, Profit and 115.3 Million Customers
Trending
SaaS Perfected Efficiency. AI Is Breaking the Playbook That Built It.
Trending
Samuel Kim Celebrates Md. Hadi Al-Amin’s Research Breakthrough Achieved Through Hard Work, Not Advantage
Samuel Kim Celebrates Md. Hadi Al-Amin’s Research Breakthrough Achieved Through Hard Work, Not Advantage
Trending

You Might also Like

AI “Gigafactories”: EU Commission launches call for tenders | heise online
Software

AI “Gigafactories”: EU Commission launches call for tenders | heise online

5 Min Read
Flash Talk: Relaxation on flash supplies, counterfeits, data centers in the sea
Software

Flash Talk: Relaxation on flash supplies, counterfeits, data centers in the sea

2 Min Read
Millions in fine for Austrian Post for data fraud
Software

Millions in fine for Austrian Post for data fraud

5 Min Read
iPhone 18 Pro and Pro Max: Production started at Foxconn
Software

iPhone 18 Pro and Pro Max: Production started at Foxconn

4 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?