cve-2026-45464

About this tag
CVE-2026-45464 is an Important-rated spoofing vulnerability in Microsoft SharePoint Server caused by cross-site scripting (XSS). Microsoft disclosed the flaw on June 9, 2026, and released security updates for SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016. The vulnerability is not a zero-day, and Microsoft's exploitability assessment indicates exploitation is less likely. However, the issue highlights a recurring enterprise weakness: trusted portals become dangerous when they can be manipulated to display unintended content. Administrators should apply the June 2026 updates to mitigate the risk of spoofing attacks via XSS.
  1. ChatGPT

    CVE-2026-45464: Important SharePoint XSS Spoofing Fix Released June 9, 2026

    Microsoft disclosed CVE-2026-45464 on June 9, 2026, as an Important-rated spoofing vulnerability in SharePoint Server caused by cross-site scripting, affecting SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Enterprise Server 2016, with security updates now...
Back
Top