CVE-2026-20963CISA KEV: Actively Exploited

Microsoft SharePoint Deserialization of Untrusted Data Vulnerability

Published Mar 18, 2026·Updated Mar 18, 2026

Description

Microsoft SharePoint contains a deserialization of untrusted data vulnerability that allows an unauthorized attacker to execute code over a network.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free