<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Microsoft SharePoint</title>
  <link>https://cvedaily.com/pages/tags/sharepoint.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/sharepoint.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Microsoft SharePoint</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:35 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2026-47294 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-47294</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-47294</guid>
    <pubDate>Mon, 01 Jun 2026 19:16:53 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-47294</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-78</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-47294">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-45659 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-45659</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-45659</guid>
    <pubDate>Fri, 22 May 2026 23:16:56 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-45659</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-45659">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40368 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40368</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40368</guid>
    <pubDate>Tue, 12 May 2026 18:17:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40368</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40368">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40365 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40365</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40365</guid>
    <pubDate>Tue, 12 May 2026 18:17:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40365</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-1220</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40365">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-40357 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-40357</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-40357</guid>
    <pubDate>Tue, 12 May 2026 18:17:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-40357</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-40357">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-35439 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-35439</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-35439</guid>
    <pubDate>Tue, 12 May 2026 18:17:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-35439</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-35439">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33112 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33112</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33112</guid>
    <pubDate>Tue, 12 May 2026 18:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33112</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33112">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-33110 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-33110</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-33110</guid>
    <pubDate>Tue, 12 May 2026 18:17:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-33110</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-33110">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-32201 – Improper input validation in Microsoft Office SharePoint allows an unauthorized ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-32201</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-32201</guid>
    <pubDate>Tue, 14 Apr 2026 18:17:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-32201</strong></p>
  <p>Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-32201">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-20945 – Improper neutralization of input during web page generation ('cross-site scripti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20945</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20945</guid>
    <pubDate>Tue, 14 Apr 2026 18:16:43 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-20945</strong></p>
  <p>Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 4.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20945">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26114 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26114</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26114</guid>
    <pubDate>Tue, 10 Mar 2026 18:18:40 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26114</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26114">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26106 – Improper input validation in Microsoft Office SharePoint allows an authorized at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26106</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26106</guid>
    <pubDate>Tue, 10 Mar 2026 18:18:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26106</strong></p>
  <p>Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26106">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-26105 – Improper neutralization of input during web page generation ('cross-site scripti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-26105</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-26105</guid>
    <pubDate>Tue, 10 Mar 2026 18:18:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-26105</strong></p>
  <p>Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-26105">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2026-20963 – Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20963</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20963</guid>
    <pubDate>Tue, 13 Jan 2026 18:16:24 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2026-20963</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20963">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-20959 – Improper neutralization of input during web page generation ('cross-site scripti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20959</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20959</guid>
    <pubDate>Tue, 13 Jan 2026 18:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-20959</strong></p>
  <p>Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 4.6 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20959">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-20958 – Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an auth...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20958</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20958</guid>
    <pubDate>Tue, 13 Jan 2026 18:16:23 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-20958</strong></p>
  <p>Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to disclose information over a network.</p>
  <p><strong>CVSS:</strong> 5.4 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20958">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-20951 – Improper input validation in Microsoft Office SharePoint allows an unauthorized ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20951</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20951</guid>
    <pubDate>Tue, 13 Jan 2026 18:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-20951</strong></p>
  <p>Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20951">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2026-20947 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-20947</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-20947</guid>
    <pubDate>Tue, 13 Jan 2026 18:16:22 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2026-20947</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-20947">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-64672 – Improper neutralization of input during web page generation ('cross-site scripti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-64672</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-64672</guid>
    <pubDate>Tue, 09 Dec 2025 18:16:06 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-64672</strong></p>
  <p>Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an authorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-64672">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-59245 – Microsoft SharePoint Online Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59245</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59245</guid>
    <pubDate>Thu, 20 Nov 2025 23:15:52 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-59245</strong></p>
  <p>Microsoft SharePoint Online Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59245">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-10703 – Improper Control of Generation of Code ('Code Injection') vulnerability in Progr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10703</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10703</guid>
    <pubDate>Wed, 19 Nov 2025 16:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-10703</strong></p>
  <p>Improper Control of Generation of Code ('Code Injection') vulnerability in Progress DataDirect Connect for JDBC drivers, Progress DataDirect Open Access JDBC driver and Hybrid Data Pipeline allows Remote Code Inclusion.  The SpyAttribute connection option implemented by the DataDirect Connect for JDBC drivers, DataDirect Hybrid Data Pipeline JDBC driver and the DataDirect OpenAccess JDBC driver l…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10703">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-10702 – Improper Control of Generation of Code ('Code Injection') vulnerability in Progr...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-10702</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-10702</guid>
    <pubDate>Wed, 19 Nov 2025 16:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-10702</strong></p>
  <p>Improper Control of Generation of Code ('Code Injection') vulnerability in Progress DataDirect Connect for JDBC drivers, Progress DataDirect Open Access JDBC driver and Hybrid Data Pipeline allows Remote Code Inclusion.   The SpyAttribute connection option implemented by the DataDirect Connect for JDBC drivers, DataDirect Hybrid Data Pipeline JDBC driver and the DataDirect OpenAccess JDBC driver…</p>
  <p><strong>CVSS:</strong> 8.6 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-10702">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-62204 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-62204</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-62204</guid>
    <pubDate>Tue, 11 Nov 2025 18:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-62204</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-62204">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59237 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59237</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59237</guid>
    <pubDate>Tue, 14 Oct 2025 17:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59237</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59237">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-59228 – Improper input validation in Microsoft Office SharePoint allows an authorized at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-59228</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-59228</guid>
    <pubDate>Tue, 14 Oct 2025 17:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-59228</strong></p>
  <p>Improper input validation in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-59228">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-54897 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-54897</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-54897</guid>
    <pubDate>Tue, 09 Sep 2025 17:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-54897</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-54897">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-53760 – Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an auth...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53760</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53760</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:44 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-53760</strong></p>
  <p>Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53760">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49712 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49712</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49712</guid>
    <pubDate>Tue, 12 Aug 2025 18:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49712</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49712">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-53771 – Improper authentication in Microsoft Office SharePoint allows an unauthorized at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53771</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53771</guid>
    <pubDate>Sun, 20 Jul 2025 23:15:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-53771</strong></p>
  <p>Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53771">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2025-53770 – Deserialization of untrusted data in on-premises Microsoft SharePoint Server all...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-53770</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-53770</guid>
    <pubDate>Sun, 20 Jul 2025 01:15:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2025-53770</strong></p>
  <p>Deserialization of untrusted data in on-premises Microsoft SharePoint Server allows an unauthorized attacker to execute code over a network. Microsoft is aware that an exploit for CVE-2025-53770 exists in the wild. Microsoft is preparing and fully testing a comprehensive update to address this vulnerability.  In the meantime, please make sure that the mitigation provided in this CVE documentation…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-53770">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-49706 – Improper authentication in Microsoft Office SharePoint allows an unauthorized at...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49706</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49706</guid>
    <pubDate>Tue, 08 Jul 2025 17:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-49706</strong></p>
  <p>Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49706">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49704 – Improper control of generation of code ('code injection') in Microsoft Office Sh...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49704</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49704</guid>
    <pubDate>Tue, 08 Jul 2025 17:15:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49704</strong></p>
  <p>Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49704">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-49701 – Improper authorization in Microsoft Office SharePoint allows an authorized attac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-49701</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-49701</guid>
    <pubDate>Tue, 08 Jul 2025 17:15:57 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-49701</strong></p>
  <p>Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-49701">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47172 – Improper neutralization of special elements used in an sql command ('sql injecti...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47172</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47172</guid>
    <pubDate>Tue, 10 Jun 2025 17:23:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47172</strong></p>
  <p>Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-89</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47172">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47166 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47166</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47166</guid>
    <pubDate>Tue, 10 Jun 2025 17:23:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47166</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47166">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-47163 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-47163</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-47163</guid>
    <pubDate>Tue, 10 Jun 2025 17:23:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-47163</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-47163">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-30384 – Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-30384</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-30384</guid>
    <pubDate>Tue, 13 May 2025 17:16:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-30384</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-30384">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-30382 – Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-30382</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-30382</guid>
    <pubDate>Tue, 13 May 2025 17:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-30382</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-30382">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-30378 – Deserialization of untrusted data in Microsoft Office SharePoint allows an unaut...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-30378</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-30378</guid>
    <pubDate>Tue, 13 May 2025 17:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-30378</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code locally.</p>
  <p><strong>CVSS:</strong> 7.0 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-30378">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-29976 – Improper privilege management in Microsoft Office SharePoint allows an authorize...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29976</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29976</guid>
    <pubDate>Tue, 13 May 2025 17:15:58 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-29976</strong></p>
  <p>Improper privilege management in Microsoft Office SharePoint allows an authorized attacker to elevate privileges locally.</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-269</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29976">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-29794 – Improper authorization in Microsoft Office SharePoint allows an authorized attac...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29794</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29794</guid>
    <pubDate>Tue, 08 Apr 2025 18:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-29794</strong></p>
  <p>Improper authorization in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29794">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-29793 – Deserialization of untrusted data in Microsoft Office SharePoint allows an autho...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-29793</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-29793</guid>
    <pubDate>Tue, 08 Apr 2025 18:16:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-29793</strong></p>
  <p>Deserialization of untrusted data in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-29793">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-1080 – LibreOffice supports Office URI Schemes to enable browser integration of LibreOf...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-1080</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-1080</guid>
    <pubDate>Tue, 04 Mar 2025 20:15:36 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-1080</strong></p>
  <p>LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions of LibreOffice a link in a browser using that scheme could be constructed with an embedded inner URL that when passed to LibreOffice could call internal macros with arbitrary argum…</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-1080">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21400 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21400</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21400</guid>
    <pubDate>Tue, 11 Feb 2025 18:15:38 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21400</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21400">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2025-21393 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21393</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21393</guid>
    <pubDate>Tue, 14 Jan 2025 18:16:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2025-21393</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21393">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21348 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21348</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21348</guid>
    <pubDate>Tue, 14 Jan 2025 18:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21348</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21348">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-21344 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-21344</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-21344</guid>
    <pubDate>Tue, 14 Jan 2025 18:16:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-21344</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-21344">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49070 – Microsoft SharePoint Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49070</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49070</guid>
    <pubDate>Thu, 12 Dec 2024 02:04:31 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49070</strong></p>
  <p>Microsoft SharePoint Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.4 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49070">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-49068 – Microsoft SharePoint Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49068</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49068</guid>
    <pubDate>Thu, 12 Dec 2024 02:04:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-49068</strong></p>
  <p>Microsoft SharePoint Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.2 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49068">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-49064 – Microsoft SharePoint Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49064</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49064</guid>
    <pubDate>Thu, 12 Dec 2024 02:04:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-49064</strong></p>
  <p>Microsoft SharePoint Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-611</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49064">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-49062 – Microsoft SharePoint Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-49062</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-49062</guid>
    <pubDate>Thu, 12 Dec 2024 02:04:30 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-49062</strong></p>
  <p>Microsoft SharePoint Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-23</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-49062">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-10839 – Zohocorp ManageEngine SharePoint Manager Plus versions 4503 and prior are vulner...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-10839</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-10839</guid>
    <pubDate>Fri, 08 Nov 2024 11:15:03 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-10839</strong></p>
  <p>Zohocorp ManageEngine SharePoint Manager Plus versions 4503 and prior are vulnerable to authenticated XML External Entity (XXE) in the Management option.</p>
  <p><strong>CVSS:</strong> 8.5 · <strong>CWE:</strong> CWE-611</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-10839">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43503 – Microsoft SharePoint Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43503</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43503</guid>
    <pubDate>Tue, 08 Oct 2024 18:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43503</strong></p>
  <p>Microsoft SharePoint Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43503">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-45851 – An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45851</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45851</guid>
    <pubDate>Thu, 12 Sep 2024 13:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-45851</strong></p>
  <p>An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the Microsoft SharePoint integration is installed on the server. For databases created with the SharePoint engine, an ‘INSERT’ query can be used for list item creation. If such a query is specially crafted to contain Python code and is run against the database, the code will be pass…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-95</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45851">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-45850 – An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45850</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45850</guid>
    <pubDate>Thu, 12 Sep 2024 13:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-45850</strong></p>
  <p>An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the Microsoft SharePoint integration is installed on the server. For databases created with the SharePoint engine, an ‘INSERT’ query can be used for site column creation. If such a query is specially crafted to contain Python code and is run against the database, the code will be pa…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-95</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45850">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-45849 – An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-45849</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-45849</guid>
    <pubDate>Thu, 12 Sep 2024 13:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-45849</strong></p>
  <p>An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the Microsoft SharePoint integration is installed on the server. For databases created with the SharePoint engine, an ‘INSERT’ query can be used for list creation. If such a query is specially crafted to contain Python code and is run against the database, the code will be passed to…</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-95</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-45849">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-43466 – Microsoft SharePoint Server Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43466</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43466</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:34 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-43466</strong></p>
  <p>Microsoft SharePoint Server Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43466">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-43464 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-43464</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-43464</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:33 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-43464</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-43464">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38228 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38228</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38228</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38228</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38228">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38227 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38227</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38227</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:25 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38227</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-77</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38227">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38018 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38018</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38018</guid>
    <pubDate>Tue, 10 Sep 2024 17:15:20 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38018</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38018">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38094 – Microsoft SharePoint Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38094</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38094</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38094</strong></p>
  <p>Microsoft SharePoint Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38094">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38024 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38024</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38024</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38024</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38024">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-38023 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-38023</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-38023</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:28 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-38023</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-38023">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-32987 – Microsoft SharePoint Server Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-32987</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-32987</guid>
    <pubDate>Tue, 09 Jul 2024 17:15:17 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-32987</strong></p>
  <p>Microsoft SharePoint Server Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-32987">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-34400 – An issue was discovered in VirtoSoftware Virto Kanban Board Web Part before 5.3...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-34400</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-34400</guid>
    <pubDate>Tue, 25 Jun 2024 21:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-34400</strong></p>
  <p>An issue was discovered in VirtoSoftware Virto Kanban Board Web Part before 5.3.5.1 for SharePoint 2019. There is /_layouts/15/Virto.KanbanTaskManager/api/KanbanData.ashx LinkTitle2 XSS.</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-34400">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-33881 – An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for Sha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-33881</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-33881</guid>
    <pubDate>Mon, 24 Jun 2024 17:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-33881</strong></p>
  <p>An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for SharePoint 2019. The Virto.SharePoint.FileDownloader/Api/Download.ashx isCompleted method allows an NTLMv2 hash leak via a UNC share pathname in the path parameter.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-33881">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-33880 – An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for Sha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-33880</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-33880</guid>
    <pubDate>Mon, 24 Jun 2024 17:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-33880</strong></p>
  <p>An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for SharePoint 2019. It discloses full pathnames via Virto.SharePoint.FileDownloader/Api/Download.ashx?action=archive.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-33880">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2024-33879 – An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for Sha...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-33879</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-33879</guid>
    <pubDate>Mon, 24 Jun 2024 17:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2024-33879</strong></p>
  <p>An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for SharePoint 2019. The Virto.SharePoint.FileDownloader/Api/Download.ashx isCompleted method allows arbitrary file download and deletion via absolute path traversal in the path parameter.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-22</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-33879">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-30100 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-30100</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-30100</guid>
    <pubDate>Tue, 11 Jun 2024 17:15:59 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-30100</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-426</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-30100">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-30044 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-30044</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-30044</guid>
    <pubDate>Tue, 14 May 2024 17:17:16 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-30044</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-30044">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-30043 – Microsoft SharePoint Server Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-30043</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-30043</guid>
    <pubDate>Tue, 14 May 2024 17:17:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-30043</strong></p>
  <p>Microsoft SharePoint Server Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-611</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-30043">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2024-26251 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-26251</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-26251</guid>
    <pubDate>Tue, 09 Apr 2024 17:15:46 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2024-26251</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 6.8 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-26251">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-21426 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-21426</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-21426</guid>
    <pubDate>Tue, 12 Mar 2024 17:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-21426</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.8 · <strong>CWE:</strong> CWE-416</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-21426">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-21318 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-21318</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-21318</guid>
    <pubDate>Tue, 09 Jan 2024 18:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-21318</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-21318">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-38177 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-38177</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-38177</guid>
    <pubDate>Tue, 14 Nov 2023 18:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-38177</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 6.1 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-38177">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-46666 – An issue was discovered when using Document Level Security and the SPO "Limited ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-46666</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-46666</guid>
    <pubDate>Thu, 26 Oct 2023 17:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-46666</strong></p>
  <p>An issue was discovered when using Document Level Security and the SPO "Limited Access" functionality in Elastic Sharepoint Online Python Connector. If a user is assigned limited access permissions to an item on a Sharepoint site then that user would have read permissions to all content on the Sharepoint site through Elasticsearch.</p>
  <p><strong>CVSS:</strong> 5.3 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-46666">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36764 – Microsoft SharePoint Server Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36764</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36764</guid>
    <pubDate>Tue, 12 Sep 2023 17:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36764</strong></p>
  <p>Microsoft SharePoint Server Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-73</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36764">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-35785 – Zoho ManageEngine Active Directory 360 versions 4315 and below, ADAudit Plus 720...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-35785</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-35785</guid>
    <pubDate>Mon, 28 Aug 2023 20:15:08 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-35785</strong></p>
  <p>Zoho ManageEngine Active Directory 360 versions 4315 and below, ADAudit Plus 7202 and below, ADManager Plus 7200 and below, Asset Explorer 6993 and below and 7xxx 7002 and below, Cloud Security Plus 4161 and below, Data Security Plus 6110 and below, Eventlog Analyzer 12301 and below, Exchange Reporter Plus 5709 and below, Log360 5315 and below, Log360 UEBA 4045 and below, M365 Manager Plus 4529 a…</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-35785">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-36894 – Microsoft SharePoint Server Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36894</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36894</guid>
    <pubDate>Tue, 08 Aug 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-36894</strong></p>
  <p>Microsoft SharePoint Server Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36894">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36892 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36892</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36892</guid>
    <pubDate>Tue, 08 Aug 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36892</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36892">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-36891 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36891</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36891</guid>
    <pubDate>Tue, 08 Aug 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-36891</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 8.0 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36891">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-36890 – Microsoft SharePoint Server Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-36890</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-36890</guid>
    <pubDate>Tue, 08 Aug 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-36890</strong></p>
  <p>Microsoft SharePoint Server Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-36890">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-33165 – Microsoft SharePoint Server Security Feature Bypass Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33165</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33165</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-33165</strong></p>
  <p>Microsoft SharePoint Server Security Feature Bypass Vulnerability</p>
  <p><strong>CVSS:</strong> 4.3 · <strong>CWE:</strong> CWE-200</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33165">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33160 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33160</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33160</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33160</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33160">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33159 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33159</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33159</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33159</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33159">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33157 – Microsoft SharePoint Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33157</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33157</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33157</strong></p>
  <p>Microsoft SharePoint Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33157">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33134 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33134</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33134</guid>
    <pubDate>Tue, 11 Jul 2023 18:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33134</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-502</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33134">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-33142 – Microsoft SharePoint Server Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33142</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33142</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-33142</strong></p>
  <p>Microsoft SharePoint Server Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-285</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33142">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-33132 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33132</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33132</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-33132</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 6.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33132">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-33130 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33130</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33130</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-33130</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 7.3 · <strong>CWE:</strong> CWE-79</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33130">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-33129 – Microsoft SharePoint Server Denial of Service Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-33129</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-33129</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:11 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-33129</strong></p>
  <p>Microsoft SharePoint Server Denial of Service Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-122</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-33129">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-29357 – Microsoft SharePoint Server Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-29357</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-29357</guid>
    <pubDate>Wed, 14 Jun 2023 00:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-29357</strong></p>
  <p>Microsoft SharePoint Server Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-303</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-29357">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-24955 – Microsoft SharePoint Server Remote Code Execution Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24955</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24955</guid>
    <pubDate>Tue, 09 May 2023 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-24955</strong></p>
  <p>Microsoft SharePoint Server Remote Code Execution Vulnerability</p>
  <p><strong>CVSS:</strong> 7.2 · <strong>CWE:</strong> CWE-94</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24955">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-24954 – Microsoft SharePoint Server Information Disclosure Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24954</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24954</guid>
    <pubDate>Tue, 09 May 2023 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-24954</strong></p>
  <p>Microsoft SharePoint Server Information Disclosure Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24954">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2023-24950 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-24950</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-24950</guid>
    <pubDate>Tue, 09 May 2023 18:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2023-24950</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 6.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-24950">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-28288 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-28288</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-28288</guid>
    <pubDate>Tue, 11 Apr 2023 21:15:27 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-28288</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 8.1 · <strong>CWE:</strong> CWE-918</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-28288">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2023-29375 – An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-29375</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-29375</guid>
    <pubDate>Mon, 10 Apr 2023 15:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2023-29375</strong></p>
  <p>An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2 before 14.2.7930, and 14.3 before 14.3.8025. There is potentially dangerous file upload through the SharePoint connector.</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-434</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-29375">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Low] CVE-2023-23395 – Microsoft SharePoint Server Spoofing Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-23395</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-23395</guid>
    <pubDate>Tue, 14 Mar 2023 17:15:13 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk low">Low</span> CVE-2023-23395</strong></p>
  <p>Microsoft SharePoint Server Spoofing Vulnerability</p>
  <p><strong>CVSS:</strong> 3.1 · <strong>CWE:</strong> CWE-601</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-23395">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2023-21717 – Microsoft SharePoint Server Elevation of Privilege Vulnerability</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2023-21717</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2023-21717</guid>
    <pubDate>Tue, 14 Feb 2023 20:15:14 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2023-21717</strong></p>
  <p>Microsoft SharePoint Server Elevation of Privilege Vulnerability</p>
  <p><strong>CVSS:</strong> 8.8 · <strong>CWE:</strong> CWE-284</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2023-21717">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
