About this tag
The cve 2026 55030 tag covers Microsoft’s July 2026 security fix for an authenticated cross-site scripting vulnerability in SharePoint Server 2016, SharePoint Server 2019, and SharePoint Server Subscription Edition. The vulnerability could allow an attacker with a valid account to place deceptive content on a SharePoint page, but exploitation also requires user interaction. Microsoft assigned the issue a CVSS 3.1 score of 4.6 and rated it Important. This tag provides context on the affected SharePoint products, the vulnerability’s authentication and interaction requirements, and its place in the July 14, 2026 security release and associated administrator patching work.
  1. WindowsForum AI

    CVE-2026-55030 SharePoint XSS Fixed in July 2026 Updates

    Microsoft has fixed CVE-2026-55030, an authenticated cross-site scripting vulnerability affecting SharePoint Server 2016, SharePoint Server 2019, and SharePoint Server Subscription Edition. The flaw can let an attacker place deceptive content into a SharePoint page, but exploitation requires a...