| Date | Source | Article |
|---|---|---|
| 2026-07-27 | Check Point Research | 27th July – Threat Intelligence Report CVE-2026-50522 |
| 2026-07-21 | BleepingComputer | Critical SharePoint RCE flaw exploited to steal machine keys CVE-2026-50522 |
| 2026-07-21 | The Hacker News | Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC CVE-2026-50522 |
| 2026-07-20 | Check Point Research | 20th July – Threat Intelligence Report CVE-2026-56155 |
| 2026-07-17 | The Hacker News | CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV CVE-2026-58644 |
| 2026-07-15 | Trend Micro ZDI | ZDI-26-412: (Pwn2Own) Microsoft SharePoint Deserialization of Untrusted Data Remote Code Execution Vulnerability CVE-2026-50522 |
| 2026-07-15 | Trend Micro ZDI | ZDI-26-413: (Pwn2Own) Microsoft SharePoint Improper Verification of Cryptographic Signature Remote Code Execution Vulnerability CVE-2026-50522 |
| 2026-07-14 | SANS Internet Storm Center | Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th) CVE-2026-56155 |
Articles from the monitored vendor research blogs and security news feeds that reference a CVE cited in this publication, or name the campaign it covers. Coverage begins when feed monitoring started; earlier articles are not indexed.
| CVE | CVSS | Affected |
|---|---|---|
| CVE-2026-50522 | 9.8 Critical | Microsoft SharePoint Microsoft SharePoint contains a deserialization of untrusted data vulnerability which could allow an unauthorized attacker to execute code over a net… |
| CVE-2026-58644 | 9.8 Critical | Microsoft SharePoint Microsoft SharePoint contains a deserialization of untrusted data vulnerability that allows an unauthorized attacker to execute code over a network. |
| CVE-2026-56155 | 7.8 High | Microsoft Active Directory Federation Services Microsoft Active Directory Federation Services contains an insufficient granularity of access control vulnerability that allows an authorized attacke… |
| CVE-2026-56164 | 5.3 Medium | Microsoft SharePoint Server Microsoft SharePoint contains a missing authentication for critical function vulnerability that allows an unauthorized attacker to elevate privileges… |
Extracted from the publication text. Each CVE links to its tracked detail page.
Each vendor links to its Known Exploited Vulnerabilities catalog page. Only vendors that appear in the KEV catalog are listed, either because the publication cites one of their KEV entries or because it names them directly.