CVE-2026-63520
Sharepoint Server90/100
exploitation likelihood
CVSS8.1
EPSS2.9%
VulnCheck KEVEXPLOITED
Improper input validation in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.
Listed in VulnCheck KEV (confirmed exploited in the wild) · CVSS base 8.1
Public PoC / Exploit
No public PoC/exploit references indexed yet (Exploit-DB / nuclei). Newly-disclosed CVEs often have none — exploit publication lags disclosure.
References1
Mentions 2