CISA Adds Microsoft SharePoint Weak Authentication Vulnerability to KEV List

CISA added a critical Microsoft SharePoint authentication flaw to its KEV catalog after CVE-2026-55040 was confirmed in active exploitation, urging organizations to secure affected on-premises environments. CVE-2026-55040 is a weakness in Microsoft SharePoint’s authentication handling that can allow an unauthenticated attacker to bypass a security feature remotely. The issue is associated with CWE-1390, which covers […]

This article has been indexed from Cyber Security News

Read the original article: