AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-70332

CRITICAL · CVSS 9.6 EPSS 0.48%

Source: NVD + CISA KEV + EPSS · Published 2026-08-07 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A critical server-side request forgery (SSRF) vulnerability in Microsoft Office SharePoint allows unauthorized attackers to spoof requests over the network, potentially leading to unauthorized access to sensitive internal resources. Organizations utilizing affected Microsoft products should prioritize immediate remediation to mitigate the risk of exploitation and protect their network integrity.

CVE
CVE-2026-70332
Severity
CRITICAL
CVSS
9.6
EPSS
0.48%
Microsoft SharePoint Office

Original NVD Description

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

Related CVEs

Other vulnerabilities affecting the same vendor(s)