VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_83f9b708b132a336fbed77b57a5a1a73

Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE

Published Aug 11, 2026

Security researchers found a way to enter Microsoft SharePoint servers as any user, including an administrator, with no valid account. A significant part of the work that found it was done through an AI agent.

The flaw, tracked as CVE-2026-55040 (CVSS 9.1), affects SharePoint Server Subscription Edition, SharePoint Server 2019, and SharePoint Server 2016. Microsoft's

Affected AI Products

ai agent
Get the weekly digest. Every Monday: top AI security stories of the week. Free.