THEMETASEC

Cybersecurity News, Aggregated

Attackers Exploit SharePoint Authentication Bypass After Public PoC Release

The Hacker News · 2 hours ago Vuln

Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is CVE-2026-55040 (CVSS score: 9.1), which refers to a critical security feature bypass that stems from weak authentication. It was patched by Microsoft as part of its July 2026 Patch Tuesday updates. "The authentication

Read full story at The Hacker News →