CVE-2026-65660

Improper control of generation of code ('code injection') in Microsoft Office SharePoint allows an authorized attacker to execute code over a network.

CVSS
8.8
EPSS
—
CISA KEV
Not listed
Exploitation
none
Public exploits
None seen
State
PUBLISHED

Coverage

What we observed

No signals recorded

CVE® is a registered trademark of The MITRE Corporation. CVE Records are reproduced under the CVE Program Terms of Use. CVE Program Terms of Use