Improper access control in Microsoft SharePoint Server - CVE-2026-56157
Published: July 17, 2026
Microsoft SharePoint Server
Detailed vulnerability description
The vulnerability allows a remote user to spoof trusted content.
The vulnerability exists due to improper access control in Microsoft Office SharePoint when handling network requests. A remote user can send crafted requests to spoof trusted content.
The issue can lead to some loss of confidentiality and integrity, but no loss of availability.